Phishlimiter: A Phishing Detection and Mitigation Approach Using Software-Defined Networking

被引:29
|
作者
Chin, Tommy, Jr. [1 ]
Xiong, Kaiqi [2 ,3 ]
Hu, Chengbin [4 ]
机构
[1] Rochester Inst Technol, Rochester, NY 14623 USA
[2] Univ S Florida, Dept Math & Stat, Florida Ctr Cybersecur, Tampa, FL 33620 USA
[3] Univ S Florida, Dept Elect Engn, Tampa, FL 33620 USA
[4] Univ S Florida, Tampa, FL 33620 USA
来源
IEEE ACCESS | 2018年 / 6卷
基金
美国国家科学基金会;
关键词
Artificial neural network (ANN); phishing; software-defined networking (SDN); security;
D O I
10.1109/ACCESS.2018.2837889
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Phishing is one of the most harmful social engineering techniques to subdue end users where threat actors find a chance to gain access to critical information systems. A common approach in phishing is through the use of e-mail communication with an embedded hyperlink. The detection and mitigation of phishing attacks are a grand challenge due to the complexity of current phishing attacks. Existing techniques are often too time consuming to be used in the real world in terms of detection and mitigation time. Likewise, they employ static detection rules that are not effective in the real world due to the dynamics of phishing attacks. In this paper, we present PhishLimiter, a new detection and mitigation approach, where we first propose a new technique for deep packet inspection (DPI) and then leverage it with software-defined networking (SDN) to identify phishing activities through e-mail and web-based communication. The proposed DPI approach consists of two components: phishing signature classification and real-time DPI. Based on the programmability of SDN, we develop the store and forward mode and the forward and inspect mode to the direct network traffic by using an artificial neural network model to classify phishing attack signatures and design the real-time DPI so that PhishLimiter can flexibly address the dynamics of phishing attacks in the real world. PhishLimiter also provides better network traffic management for containing phishing attacks since it has the global view of a network through SDN. Furthermore, we evaluate PhishLimiter using a real-world testbed environment and data sets consisting of real-world email with embedded links. Our extensive experimental study shows that PhishLimiter provides an effective and efficient solution to deter malicious activities.
引用
下载
收藏
页码:42516 / 42531
页数:16
相关论文
共 50 条
  • [31] High Availability in Software-Defined Networking using Cluster Controller: A Simulation Approach
    Suartana, I. Made
    Anggraini, Mokhamad Aguk Nur
    Pramudita, Abhimata Zuhra
    2020 THIRD INTERNATIONAL CONFERENCE ON VOCATIONAL EDUCATION AND ELECTRICAL ENGINEERING (ICVEE): STRENGTHENING THE FRAMEWORK OF SOCIETY 5.0 THROUGH INNOVATIONS IN EDUCATION, ELECTRICAL, ENGINEERING AND INFORMATICS ENGINEERING, 2020,
  • [32] Caching Using Software-Defined Networking in LTE Networks
    Kimmerlin, Mael
    Costa-Requena, Jose
    Manner, Jukka
    2014 IEEE INTERNATIONAL CONFERENCE ON ADVANCED NETWORKS AND TELECOMMUNCATIONS SYSTEMS (ANTS), 2014,
  • [33] A Framework for Threats Analysis Using Software-Defined Networking
    Moldovan, Francisc
    Oprisa, Ciprian
    2018 IEEE 14TH INTERNATIONAL CONFERENCE ON INTELLIGENT COMPUTER COMMUNICATION AND PROCESSING (ICCP), 2018, : 451 - 457
  • [34] ENHANCING AVAILABILITY OF SERVICES USING SOFTWARE-DEFINED NETWORKING
    Klepac, Martin
    Hegr, Tomas
    Bohac, Leos
    ADVANCES IN ELECTRICAL AND ELECTRONIC ENGINEERING, 2015, 13 (05) : 529 - 535
  • [35] Simulating Resilient Server using Software-Defined Networking
    Winarno, Idris
    Ishida, Yoshiteru
    2016 INTERNATIONAL CONFERENCE ON ADVANCED INFORMATICS - CONCEPTS, THEORY AND APPLICATION (ICAICTA), 2016,
  • [36] Programmable Networks-From Software-Defined Radio to Software-Defined Networking
    Macedo, Daniel F.
    Guedes, Dorgival
    Vieira, Luiz F. M.
    Vieira, Marcos A. M.
    Nogueira, Michele
    IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2015, 17 (02): : 1102 - 1125
  • [37] Joint DDoS detection system based on software-defined networking
    Song Y.
    Yang H.
    Wu W.
    Hu A.
    Gao S.
    Qinghua Daxue Xuebao/Journal of Tsinghua University, 2019, 59 (01): : 28 - 35
  • [38] Software-Defined Networking (SDN) based VANET Architecture: Mitigation of Traffic Congestion
    Adbeb, Tesfanesh
    Di, Wu
    Ibrar, Muhammad
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2020, 11 (03) : 706 - 714
  • [39] A Taxonomy-based Approach for Security in Software-Defined Networking
    Banse, Christian
    Schuette, Julian
    2017 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2017,
  • [40] Identity Management in Internet of Things: A Software-Defined Networking Approach
    Sadique, Kazi Masum
    Rahmani, Rahim
    Johannesson, Paul
    PROCEEDINGS OF THE 2ND INTERNATIONAL CONFERENCE ON COMMUNICATION, DEVICES AND COMPUTING, 2020, 602 : 495 - 504