Enhancing Malicious URL Detection: A Novel Framework Leveraging Priority Coefficient and Feature Evaluation

被引:2
作者
Rafsanjani, Ahmad Sahban [1 ]
Binti Kamaruddin, Norshaliza [2 ]
Behjati, Mehran [1 ]
Aslam, Saad [1 ]
Sarfaraz, Aaliya [1 ]
Amphawan, Angela [1 ,3 ]
机构
[1] Sunway Univ, Sch Engn & Technol, Bandar Sunway 47500, Selangor Darul, Malaysia
[2] Univ Teknol Malaysia, Fac Artificial Intelligence, Kuala Lumpur 54100, Malaysia
[3] Sunway Univ, Sch Engn & Technol, Smart Photon Res Lab, Subang Jaya 47500, Selangor, Malaysia
来源
IEEE ACCESS | 2024年 / 12卷
关键词
Malicious URL detection; phishing; malware; network security; feature extraction; cyber threats; machine learning; NETWORK;
D O I
10.1109/ACCESS.2024.3412331
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Malicious Uniform Resource Locators (URLs) pose a significant cybersecurity threat by carrying out attacks such as phishing and malware propagation. Conventional malicious URL detection methods, relying on blacklists and heuristics, often struggle to identify new and obfuscated malicious URLs. To address this challenge, machine learning and deep learning have been leveraged to enhance detection capabilities, albeit relying heavily on large and frequently updated datasets. Furthermore, the efficacy of these methods is intrinsically tied to the quality of the training data, a requirement that becomes increasingly challenging to fulfill in real-world scenarios due to constraints such as data scarcity and the dynamic nature of evolving cyber threats. In this study, we introduce an innovative framework for malicious URL detection based on predefined static feature classification by allocating priority coefficients and feature evaluation methods. Our feature classification encompasses 42 classes, including blacklist, lexical, host-based, and content-based features. To validate our framework, we collected a dataset of 5000 real-world URLs from prominent phishing and malware websites, namely URLhaus and PhishTank. We assessed our framework's performance using three supervised machine learning methods: Support Vector Machine (SVM), Random Forest (RF), and Bayesian Network (BN). The results demonstrate that our framework outperforms these methods, achieving an impressive detection accuracy of 98.95% and a precision value of 98.60%. Furthermore, we conducted a benchmarking analysis against three comprehensive malicious URL detection methods (PDRCNN, the Li method, and URLNet), demonstrating that our proposed framework excels in terms of accuracy and precision. In conclusion, our novel malicious URL detection framework substantially enhances accuracy, significantly bolstering cybersecurity defenses against emerging threats.
引用
收藏
页码:85001 / 85026
页数:26
相关论文
共 101 条
  • [71] Sahoo D, 2019, Arxiv, DOI arXiv:1701.07179
  • [72] PhishHaven&x2014;An Efficient Real-Time AI Phishing URLs Detection System
    Sameen, Maria
    Han, Kyunghyun
    Hwang, Seong Oun
    [J]. IEEE ACCESS, 2020, 8 : 83425 - 83443
  • [73] Saxe J, 2017, Arxiv, DOI arXiv:1702.08568
  • [74] Deep belief network based detection and categorization of malicious URLs
    Selvaganapathy, ShymalaGowri
    Nivaashini, Mathappan
    Natarajan, HemaPriya
    [J]. INFORMATION SECURITY JOURNAL, 2018, 27 (03): : 145 - 161
  • [75] Shantanu, 2021, Proceedings of the 2021 International Conference on Artificial Intelligence and Smart Systems (ICAIS), P1147, DOI 10.1109/ICAIS50930.2021.9396014
  • [76] Shibahara T, 2017, IEEE ICC
  • [77] Detecting Malicious Websites by Integrating Malicious, Benign, and Compromised Redirection Subgraph Similarities
    Shibahara, Toshiki
    Takata, Yuta
    Akiyama, Mitsuaki
    Yagi, Takeshi
    Yada, Takeshi
    [J]. 2017 IEEE 41ST ANNUAL COMPUTER SOFTWARE AND APPLICATIONS CONFERENCE (COMPSAC), VOL 1, 2017, : 655 - 664
  • [78] Silva E. L., 2020, Comput. Secur., V88
  • [79] Machine Learning & Concept Drift based Approach for Malicious Website Detection
    Singhal, Siddharth
    Chawla, Utkarsh
    Shorey, Rajeev
    [J]. 2020 INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS & NETWORKS (COMSNETS), 2020,
  • [80] PhiDMA - A phishing detection model with multi-filter approach
    Sonowal, Gunikhan
    Kuppusamy, K. S.
    [J]. JOURNAL OF KING SAUD UNIVERSITY-COMPUTER AND INFORMATION SCIENCES, 2020, 32 (01) : 99 - 112