中文
相关论文

相关论文: PhishReplicant: A Language Model-based Approach to…

200 篇论文

The domain name system (DNS) is a crucial backbone of the Internet and millions of new domains are created on a daily basis. While the vast majority of these domains are legitimate, adversaries also register new hostnames to carry out…

密码学与安全 · 计算机科学 2019-02-25 Dennis Tatang , Florian Quinkert , Nico Dolecki , Thorsten Holz

Phishing attacks continue to be a significant threat on the Internet. Prior studies show that it is possible to determine whether a website is phishing or not just by analyzing its URL more carefully. A major advantage of the URL based…

密码学与安全 · 计算机科学 2021-12-07 Harshal Tupsamudre , Sparsh Jain , Sachin Lodha

A homoglyph (name spoofing) attack is a common technique used by adversaries to obfuscate file and domain names. This technique creates process or domain names that are visually similar to legitimate and recognized names. For instance, an…

密码学与安全 · 计算机科学 2018-05-25 Jonathan Woodbridge , Hyrum S. Anderson , Anjum Ahuja , Daniel Grant

In the realm of cybersecurity, phishing stands as a prevalent cyber attack, where attackers employ various tactics to deceive users into gathering their sensitive information, potentially leading to identity theft or financial gain.…

密码学与安全 · 计算机科学 2025-09-11 Aditya Kulkarni , Vivek Balachandran , Tamal Das

Phishing attacks are increasingly prevalent, with adversaries creating deceptive webpages to steal sensitive information. Despite advancements in machine learning and deep learning for phishing detection, attackers constantly develop new…

密码学与安全 · 计算机科学 2025-09-11 Duddu Hriday , Aditya Kulkarni , Vivek Balachandran , Tamal Das

Phishing is an online identity theft technique where attackers steal users personal information, leading to financial losses for individuals and organizations. With the increasing adoption of smartphones, which provide functionalities…

密码学与安全 · 计算机科学 2025-01-03 Diksha Goel

Recent times have witnessed the rise of anti-phishing schemes powered by deep learning (DL). In particular, logo-based phishing detectors rely on DL models from Computer Vision to identify logos of well-known brands on webpages, to detect…

密码学与安全 · 计算机科学 2023-09-14 Jehyun Lee , Zhe Xin , Melanie Ng Pei See , Kanav Sabharwal , Giovanni Apruzzese , Dinil Mon Divakaran

A covert attack method often used by APT organizations is the DNS tunnel, which is used to pass information by constructing C2 networks. And they often use the method of frequently changing domain names and server IP addresses to evade…

网络与互联网体系结构 · 计算机科学 2022-07-15 Xin Ma , Shize Guo , Zhisong Pan , Bin Liu , Kaolin Jiang , Ming Chen , Shijiao Tang

Cyber attacks continue to pose significant threats to individuals and organizations, stealing sensitive data such as personally identifiable information, financial information, and login credentials. Hence, detecting malicious websites…

密码学与安全 · 计算机科学 2024-04-16 Saroj Gopali , Akbar S. Namin , Faranak Abri , Keith S. Jones

Cybercriminals have long depended on domain names for phishing, spam, malware distribution, and botnet operation. To facilitate the malicious activities, they continually register new domain names for exploitation. Previous work revealed an…

The escalating landscape of cyber threats, characterized by the registration of thousands of new domains daily for large-scale Internet attacks such as spam, phishing, and drive-by downloads, underscores the imperative for innovative…

密码学与安全 · 计算机科学 2024-07-11 Furkan Çolhak , Mert İlhan Ecevit , Hasan Dağ , Reiner Creutzburg

Cloud providers' support for network evasion techniques that misrepresent the server's domain name is more prevalent than previously believed, which has serious implications for security and privacy due to the reliance on domain names in…

密码学与安全 · 计算机科学 2023-07-18 Blake Anderson , David McGrew

The ability of ChatGPT to generate human-like responses and understand context has made it a popular tool for conversational agents, content creation, data analysis, and research and innovation. However, its effectiveness and ease of…

密码学与安全 · 计算机科学 2023-05-10 Sayak Saha Roy , Krishna Vamsi Naragam , Shirin Nilizadeh

DNS dynamic updates represent an inherently vulnerable mechanism deliberately granting the potential for any host to dynamically modify DNS zone files. Consequently, this feature exposes domains to various security risks such as domain…

密码学与安全 · 计算机科学 2024-06-06 Yevheniya Nosyk , Maciej Korczyński , Carlos H. Gañán , Michał Król , Qasim Lone , Andrzej Duda

Phishing remains the most pervasive threat to the Web, enabling large-scale credential theft and financial fraud through deceptive webpages. While recent reference-based and generative-AI-driven phishing detectors achieve strong accuracy,…

密码学与安全 · 计算机科学 2026-03-03 Tailai Song , Pedro Casas , Michela Meo

A crucial technical challenge for cybercriminals is to keep control over the potentially millions of infected devices that build up their botnets, without compromising the robustness of their attacks. A single, fixed C&C server, for…

密码学与安全 · 计算机科学 2021-08-03 Fran Casino , Nikolaos Lykousas , Ivan Homoliak , Constantinos Patsakis , Julio Hernandez-Castro

Phishing websites are everywhere, and countermeasures based on static blocklists cannot cope with such a threat. To address this problem, state-of-the-art solutions entail the application of machine learning (ML) to detect phishing websites…

密码学与安全 · 计算机科学 2023-11-29 Ajka Draganovic , Savino Dambra , Javier Aldana Iuit , Kevin Roundy , Giovanni Apruzzese

Domain generation algorithms (DGAs) are frequently employed by malware to generate domains used for connecting to command-and-control (C2) servers. Recent work in DGA detection leveraged deep learning architectures like convolutional neural…

密码学与安全 · 计算机科学 2019-01-29 Joewie J. Koh , Barton Rhodes

Spam messes up users inbox, consumes resources and spread attacks like DDoS, MiM, phishing etc. Phishing is a byproduct of email and causes financial loss to users and loss of reputation to financial institutions. In this paper we examine…

密码学与安全 · 计算机科学 2011-08-09 Cynthia Dhinakaran , Dhinaharan Nagamalai , Jae Kwang Lee

Phishing attacks are one of the most common social engineering attacks targeting users emails to fraudulently steal confidential and sensitive information. They can be used as a part of more massive attacks launched to gain a foothold in…

密码学与安全 · 计算机科学 2022-01-27 Fatima Salahdine , Zakaria El Mrabet , Naima Kaabouch