Development of anti-phishing browser based on random forest and rule of extraction framework

被引:15
|
作者
Gowda, Mohith H. R. [1 ]
Adithya, M., V [2 ]
Prasad, Gunesh S. [3 ]
Vinay, S. [4 ]
机构
[1] PES Coll Engn, Comp Sci & Engn, 4011 Vasuda Krupa,3rd Cross, Mandya 571401, Karnataka, India
[2] PES Coll Engn, Comp Sci & Engn, 1932,1st Main Rd,Near Vinayaka Auto Stand, Mandya 571401, Karnataka, India
[3] PES Coll Engn, Comp Sci & Engn, 20-19,5th Cross,Near Shakthi Nagar Pk, Mysore 570019, Karnataka, India
[4] PES Coll Engn, Informat Sci & Engn, PES Engn Coll Rd,PES Coll Campus, Mandya 571401, Karnataka, India
关键词
Phishing attack; Machine learning; Intelligent browser engine; Rule of extraction algorithm; Browser architecture; EFFICIENT;
D O I
10.1186/s42400-020-00059-1
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Phishing is a technique under Social Engineering attacks which is most widely used to get user sensitive information, such as login credentials and credit and debit card information, etc. It is carried out by a person masquerading as an authentic individual. To protect web users from these attacks, various anti-phishing techniques are developed, but they fail to protect the user from these attacks in various ways. In this paper, we propose a novel technique to identify phishing websites effortlessly on the client side by proposing a novel browser architecture. In this system, we use the rule of extraction framework to extract the properties or features of a website using the URL only. This list consists of 30 different properties of a URL, which will later be used by the Random Forest Classification machine learning model to detect the authenticity of the website. A dataset consisting of 11,055 tuples is used to train the model. These processes are carried out on the client-side with the help of a redesigned browser architecture. Today Researches have come up with machine learning frameworks to detect phishing sites, but they are not in a state to be used by individuals having no technical knowledge. To make sure that these tools are accessible to every individual, we have improvised and introduced detection methods into the browser architecture named as 'Embedded Phishing Detection Browser' (EPDB), which is a novel method to preserve the existing user experience while improving the security. The newly designed browser architecture introduces a special segment to perform phishing detection operations in real-time. We have prototyped this technique to ensure maximum security, better accuracy of 99.36% in the identification of phishing websites in real-time.
引用
收藏
页数:14
相关论文
共 50 条
  • [21] Towards Personalized Game-Based Learning in Anti-Phishing Education
    Roepke, Rene
    Schroeder, Ulrik
    Drury, Vincent
    Meyer, Ulrike
    2020 IEEE 20TH INTERNATIONAL CONFERENCE ON ADVANCED LEARNING TECHNOLOGIES (ICALT 2020), 2020, : 65 - 66
  • [22] Textual and Visual Content-Based Anti-Phishing: A Bayesian Approach
    Zhang, Haijun
    Liu, Gang
    Chow, Tommy W. S.
    Liu, Wenyin
    IEEE TRANSACTIONS ON NEURAL NETWORKS, 2011, 22 (10): : 1532 - 1546
  • [23] Dynamic identity-based single password anti-phishing protocol
    Sood, Sandeep K.
    Sarje, Anil K.
    Singh, Kuldip
    SECURITY AND COMMUNICATION NETWORKS, 2011, 4 (04) : 418 - 427
  • [24] Data Analytics: Intelligent Anti-Phishing Techniques Based on Machine Learning
    Baadel, Said
    Lu, Joan
    JOURNAL OF INFORMATION & KNOWLEDGE MANAGEMENT, 2019, 18 (01)
  • [25] LSTM Based Self-Defending AI Chatbot Providing Anti-Phishing
    Kovalluri, Sai Sreewathsa
    Ashok, Aravind
    Singanamala, Hareesh
    Prabaharan, P.
    PROCEEDINGS OF THE FIRST WORKSHOP ON RADICAL AND EXPERIENTIAL SECURITY (RESEC'18), 2018, : 49 - 56
  • [26] A novel anti-phishing scheme based on login page detection and logo identification
    Yang, Mingxing
    Peng, Yanbin
    Peng, Xinguang
    Journal of Computational Information Systems, 2014, 10 (23): : 10179 - 10186
  • [27] STUDYING USER'S COMPUTER SECURITY BEHAVIOUR IN DEVELOPING AN EFFECTIVE ANTI-PHISHING EDUCATIONAL FRAMEWORK
    Rakhra, Manik
    Kaur, Davneet
    PROCEEDINGS OF THE 2ND INTERNATIONAL CONFERENCE ON INVENTIVE SYSTEMS AND CONTROL (ICISC 2018), 2018, : 832 - 836
  • [28] Improving the Accuracy of Search Engine Based Anti-Phishing Solutions Using Lightweight Features
    Varshney, Gaurav
    Misra, Manoj
    Atrey, Pradeep K.
    2016 11TH INTERNATIONAL CONFERENCE FOR INTERNET TECHNOLOGY AND SECURED TRANSACTIONS (ICITST), 2016, : 365 - 370
  • [29] Explaining the Suspicion: Design of an XAI-Based User-Focused Anti-Phishing Measure
    Kluge, Kilian
    Eckhardt, Regina
    INNOVATION THROUGH INFORMATION SYSTEMS, VOL II: A COLLECTION OF LATEST RESEARCH ON TECHNOLOGY ISSUES, 2021, 47 : 247 - 261
  • [30] Anti-phishing technique based on dynamic image captcha using multi secret sharing scheme
    Arora, Akanksha
    Garg, Hitendra
    Shivani, Shivendra
    JOURNAL OF VISUAL COMMUNICATION AND IMAGE REPRESENTATION, 2022, 88