Detecting Cloud-Based Phishing Attacks by Combining Deep Learning Models

被引:2
|
作者
Jha, Birendra [1 ]
Atre, Medha [1 ]
Rao, Ashwini [1 ]
机构
[1] Eydle Inc, Los Angeles, CA 91107 USA
关键词
Deep Learning; Phishing; Cybersecurity;
D O I
10.1109/TPS-ISA56441.2022.00026
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Web-based phishing attacks nowadays exploit popular cloud web hosting services and apps such as Google Sites and Typeform for hosting their attacks. Since these attacks originate from reputable domains and IP addresses of the cloud services, traditional phishing detection methods such as IP reputation monitoring and blacklisting are not very effective. Here we investigate the effectiveness of deep learning models in detecting this class of cloud-based phishing attacks. Specifically, we evaluate deep learning models for three phishing detection methods-LSTM model for URL analysis, YOLOv2 model for logo analysis, and triplet network model for visual similarity analysis. We train the models using well-known datasets and test their performance on cloud-based phishing attacks in the wild. Our results qualitatively explain why the models succeed or fail. Furthermore, our results highlight how combining results from the individual models can improve the effectiveness of detecting cloud-based phishing attacks.
引用
收藏
页码:130 / 139
页数:10
相关论文
共 50 条
  • [1] Cloud-based email phishing attack using machine and deep learning algorithm
    Umer Ahmed Butt
    Rashid Amin
    Hamza Aldabbas
    Senthilkumar Mohan
    Bader Alouffi
    Ali Ahmadian
    Complex & Intelligent Systems, 2023, 9 : 3043 - 3070
  • [2] Cloud-based email phishing attack using machine and deep learning algorithm
    Butt, Umer Ahmed
    Amin, Rashid
    Aldabbas, Hamza
    Mohan, Senthilkumar
    Alouffi, Bader
    Ahmadian, Ali
    COMPLEX & INTELLIGENT SYSTEMS, 2023, 9 (03) : 3043 - 3070
  • [3] Model Extraction Attacks and Defenses on Cloud-Based Machine Learning Models
    Gong, Xueluan
    Wang, Qian
    Chen, Yanjiao
    Yang, Wang
    Jiang, Xinchang
    IEEE COMMUNICATIONS MAGAZINE, 2020, 58 (12) : 83 - 89
  • [4] Phishing Attacks Detection using Machine Learning and Deep Learning Models
    Aljabri, Malak
    Mirza, Samiha
    2022 7TH INTERNATIONAL CONFERENCE ON DATA SCIENCE AND MACHINE LEARNING APPLICATIONS (CDMA 2022), 2022, : 175 - 180
  • [5] A lightweight machine learning based security framework for detecting phishing attacks
    Kumar, Yogendra
    Subba, Basant
    2021 INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS & NETWORKS (COMSNETS), 2021, : 184 - 188
  • [6] Detecting Spear Phishing Attacks Using Machine Learning
    Regulagadda, Ramakrishna
    Krishna, M. Sai
    Prasanth, G.
    Sumalatha, V
    Ramesh, Y. Sai
    INTERNATIONAL JOURNAL OF EARLY CHILDHOOD SPECIAL EDUCATION, 2022, 14 (05) : 1457 - 1459
  • [7] Machine Learning Techniques for Detecting Phishing URL Attacks
    Mosa, Diana T.
    Shams, Mahmoud Y.
    Abohany, Amr A.
    El-kenawy, El-Sayed M.
    Thabet, M.
    CMC-COMPUTERS MATERIALS & CONTINUA, 2023, 75 (01): : 1271 - 1290
  • [8] PhishNot: A Cloud-Based Machine-Learning Approach to Phishing URL Detection
    Alani, Mohammed M.
    Tawfik, Hissam
    COMPUTER NETWORKS, 2022, 218
  • [9] Detecting Shilling Attacks Using Hybrid Deep Learning Models
    Ebrahimian, Mahsa
    Kashef, Rasha
    SYMMETRY-BASEL, 2020, 12 (11): : 1 - 15
  • [10] Cloud-based DDoS Attacks and Defenses
    Darwish, Marwan
    Ouda, Abdelkader
    Capretz, Luiz Fernando
    INTERNATIONAL CONFERENCE ON INFORMATION SOCIETY (I-SOCIETY 2013), 2013, : 67 - 71