PhiGARo: Automatic Phishing Detection and Incident Response Framework
The result's identifiers
Result code in IS VaVaI
<a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F00216224%3A14610%2F14%3A00076370" target="_blank" >RIV/00216224:14610/14:00076370 - isvavai.cz</a>
Result on the web
<a href="http://dx.doi.org/10.1109/ARES.2014.46" target="_blank" >http://dx.doi.org/10.1109/ARES.2014.46</a>
DOI - Digital Object Identifier
<a href="http://dx.doi.org/10.1109/ARES.2014.46" target="_blank" >10.1109/ARES.2014.46</a>
Alternative languages
Result language
angličtina
Original language name
PhiGARo: Automatic Phishing Detection and Incident Response Framework
Original language description
We present a comprehensive framework for automatic phishing incident processing and work in progress concerning automatic phishing detection and reporting. Our work is based upon the automatic phishing incident processing tool PhiGARo which locates usersresponding to phishing attack attempts and prevents access to phishing sites from the protected network. Although PhiGARo processes the phishing incidents automatically, it depends on reports of phishing incidents from users. We propose a framework which introduces honey pots into the process in order to eliminate the reliance on user input. The honey pots are used to capture e-mails, automatically detect messages containing phishing and immediately transfer them to PhiGARo. There is a need to propagate e-mail addresses of a honey pot to attract phishers. We discuss approaches to the honey pot e-mail propagation and propose a further enhancement to using honey pots in response to phishing incidents.
Czech name
—
Czech description
—
Classification
Type
D - Article in proceedings
CEP classification
IN - Informatics
OECD FORD branch
—
Result continuities
Project
—
Continuities
I - Institucionalni podpora na dlouhodoby koncepcni rozvoj vyzkumne organizace
Others
Publication year
2014
Confidentiality
S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů
Data specific for result type
Article name in the collection
Availability, Reliability and Security (ARES), 2014 Ninth International Conference on
ISBN
9781479942237
ISSN
—
e-ISSN
—
Number of pages
8
Pages from-to
295-302
Publisher name
IEEE
Place of publication
Fribourg, Switzerland
Event location
Fribourg, Switzerland
Event date
Jan 1, 2014
Type of event by nationality
WRD - Celosvětová akce
UT code for WoS article
—