The invention provides a method for detecting a
phishing website based on SEO. The method comprises the steps as follows: the known
phishing website is analyzed, and a title of the known
phishing website is taken as a keyword and added into a malicious title
database; a webpage obtained by saving a webpage crawler, and a webpage index
database is built after an obtained webpage abstract and a corresponding URL (
uniform resource locator) are filtered and reabsorbed; the webpage abstract in the webpage index
database is retrieved by using the keyword in the malicious title database and / or a preset keyword, and a successfully matched webpage is saved as a suspicious webpage; and the suspicious webpage is judged with a judgment strategy, the title of the suspicious webpage which is judged to be the phishing website is added into the malicious title database. The invention further discloses a
system for detecting the phishing website based on the SEO. According to the method and the
system for detecting the phishing website based on the SEO, the retrieval range is reduced by abstracting the keyword, active
crawling and judgment are performed on the website and the database is updated continuously, the
false alarm rate is decreased, the obtained phishing website is judged automatically, and the missing report rate is reduced.