DeltaPhish: Detecting Phishing Webpages in Compromised Websites
@article{Corona2017DeltaPhishDP, title={DeltaPhish: Detecting Phishing Webpages in Compromised Websites}, author={I. Corona and B. Biggio and M. Contini and L. Piras and Roberto Corda and Mauro Mereu and Guido Mureddu and Davide Ariu and F. Roli}, journal={ArXiv}, year={2017}, volume={abs/1707.00317} }
The large-scale deployment of modern phishing attacks relies on the automatic exploitation of vulnerable websites in the wild, to maximize profit while hindering attack traceability, detection and blacklisting. To the best of our knowledge, this is the first work that specifically leverages this adversarial behavior for detection purposes. We show that phishing webpages can be accurately detected by highlighting HTML code and visual differences with respect to other (legitimate) pages hosted… CONTINUE READING
Figures and Topics from this paper
32 Citations
Tear Off Your Disguise: Phishing Website Detection Using Visual and Network Identities
- Computer Science
- ICICS
- 2019
- 1
- PDF
Victim or Attacker? A Multi-dataset Domain Classification of Phishing Attacks
- Computer Science
- 2019 17th International Conference on Privacy, Security and Trust (PST)
- 2019
- 1
- Highly Influenced
Advanced Evasion Attacks and Mitigations on Practical ML-Based Phishing Website Classifiers
- Computer Science
- ArXiv
- 2020
- 5
- Highly Influenced
- PDF
SoK: A Comprehensive Reexamination of Phishing Research From the Security Perspective
- Computer Science
- IEEE Communications Surveys & Tutorials
- 2020
- 17
- PDF
Discovering HTTPSified Phishing Websites Using the TLS Certificates Footprints
- Computer Science
- 2020 IEEE European Symposium on Security and Privacy Workshops (EuroS&PW)
- 2020
Needle in a Haystack: Tracking Down Elite Phishing Domains in the Wild
- Computer Science
- Internet Measurement Conference
- 2018
- 47
- PDF
COMAR: Classification of Compromised versus Maliciously Registered Domains
- Computer Science
- 2020 IEEE European Symposium on Security and Privacy (EuroS&P)
- 2020
- 2
- PDF
References
SHOWING 1-10 OF 44 REFERENCES
On the Effectiveness of Techniques to Detect Phishing Sites
- Computer Science
- DIMVA
- 2007
- 180
- Highly Influential
- PDF
Anomaly Based Web Phishing Page Detection
- Computer Science
- 2006 22nd Annual Computer Security Applications Conference (ACSAC'06)
- 2006
- 206
- PDF
High-performance content-based phishing attack detection
- Engineering, Computer Science
- 2011 eCrime Researchers Summit
- 2011
- 36
- PDF
A Hierarchical Adaptive Probabilistic Approach for Zero Hour Phish Detection
- Computer Science
- ESORICS
- 2010
- 25
- PDF
PhishZoo: Detecting Phishing Websites by Looking at Them
- Computer Science
- 2011 IEEE Fifth International Conference on Semantic Computing
- 2011
- 121
- PDF