Phishing website detection method based on web automatic testing and width learning

A technology for automated testing and phishing websites, which is applied in the fields of instruments, computing, and electrical and digital data processing. It can solve problems such as low speed and efficiency, unreliable determination methods, and time-consuming, so as to improve the recognition ability.

Active Publication Date: 2018-07-27
HUAZHONG UNIV OF SCI & TECH
View PDF6 Cites 8 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

This method cannot identify the latest phishing websites and requires manual verification
[0008] ② URL feature extraction: extract corresponding features through the accessed URL, such as the domain name, but this judgment method is unreliable, because the URL does not have the decisive characteristics of the phishing website, and the misjudgment rate and missed judgment rate of this method higher
[0009] ③ Combining various website page elements as features to detect phishing websites: because it takes a certain amount of time to acquire the features of web pages, this type of method has improved accuracy compared with the second type of method, but the speed and efficiency of execution are both low. not tall

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Phishing website detection method based on web automatic testing and width learning
  • Phishing website detection method based on web automatic testing and width learning
  • Phishing website detection method based on web automatic testing and width learning

Examples

Experimental program
Comparison scheme
Effect test

Embodiment approach

[0074] (1) Step 1: Static feature extraction, dynamic feature extraction and interactive click access are performed on a large number of phishing websites and normal websites in the data set on the PC side.

[0075] Such as figure 2 As shown, step 1 is as follows:

[0076] Step 1.1, perform static feature extraction on the url itself, including the following six features:

[0077] ①Whether the url contains an ip address: the ip address can be used to evade domain name registration and user inspection;

[0078] ②Whether the domain name of the url is pure numbers from the beginning to the first point: Regular URLs rarely use pure numbers to insert domain names, such as the official website Baidu https: / / www.baidu.com / , and the phishing website http: / / www.030033. com / ;

[0079] ③Whether there are sensitive characters such as @ in the url: the account is in front of the @ character, and the real address is behind it, which is commonly used in phishing websites;

...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a phishing website detection method based on web automatic testing and width learning, and belongs to the technical field of computer network safety. According to the invention, firstly, conventional feature extraction is carried out on the basis of url (Uniform Resource Locator) and html pages, then interactive feature extraction is carried out by utilizing a web automatictesting technology, and finally, width learning training is carried out by utilizing a preprocessed training sample after feature extraction, so that a phishing website is accurately and rapidly identified and detected, and network information and property safety of the public is protected.

Description

technical field [0001] The invention belongs to the technical field of computer network security, and more specifically relates to a method for detecting phishing websites based on web automation testing and breadth learning. Background technique [0002] Phishing is an attack method that steals sensitive information such as personal identity data and financial account numbers of users by sending a large number of deceptive spam emails and false advertisements on web pages that claim to come from banks or well-known institutions. The most typical phishing attack is to lure users to a well-designed phishing website that is very similar to the target organization's website, to obtain sensitive personal information entered by users on the website or to deceive users into remittances. Because the victims of this kind of attack process are not easy to be alert, phishing websites have become one of the most serious means of Internet crimes, and the detection of phishing websites h...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06G06F17/30
CPCG06F16/9566H04L63/1483H04L63/306
Inventor 袁巍聂依凡李浩鹏贾昂蔡明辉姜源
Owner HUAZHONG UNIV OF SCI & TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products