Method for evaluating the security risk of a website against phishing attacks

9Citations
Citations of this article
27Readers
Mendeley users who have this article in their library.
Get full text

Abstract

As Internet technologies evolve, phishing and pharming attacks frequently occur and diversify. In order to protect the economic loss and privacy of Internet users against the phishing attacks, several researches such as website authentication and email authentication have been studied. Although, most of them use website black-list (WBL) or website white-list (WWL), there are several weak points, such as validity of WBL DB (database) and the short life-cycle of phishing websites. That is, it is impossible to discriminate between legitimate and forged websites until the phishing attacks are detected and recorded into WBL DB. Furthermore, the existing WBL and WWL approaches hardly counter the new generation of sophisticated malware pharming attacks. In this paper, in order to overcome the limitation of WBL and WWL approaches, new approach based on the WWL approach, which can quantitatively estimate the security risk of websites that is security risk degree representing the phishing websites, is proposed. © 2008 Springer-Verlag Berlin Heidelberg.

Cite

CITATION STYLE

APA

Kim, Y. G., Cho, S., Lee, J. S., Lee, M. S., Kim, I. H., & Kim, S. H. (2008). Method for evaluating the security risk of a website against phishing attacks. In Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics) (Vol. 5075 LNCS, pp. 21–31). https://doi.org/10.1007/978-3-540-69304-8_3

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free