A systematic literature review on phishing website detection techniques

被引:36
作者
Safi, Asadullah [1 ]
Singh, Satwinder [2 ]
机构
[1] Nangarhar Univ, Minist Higher Educ, Jalalabad, Afghanistan
[2] Cent Univ Punjab, Dept Comp Sci & Technol, Bathinda, Punjab, India
关键词
Phishing; Phishing Detection; Deep Learning; Cyber Security; Machine Learning; FEATURES;
D O I
10.1016/j.jksuci.2023.01.004
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Phishing is a fraud attempt in which an attacker acts as a trusted person or entity to obtain sensitive information from an internet user. In this Systematic Literature Survey (SLR), different phishing detection approaches, namely Lists Based, Visual Similarity, Heuristic, Machine Learning, and Deep Learning based techniques, are studied and compared. For this purpose, several algorithms, data sets, and techniques for phishing website detection are revealed with the proposed research questions. A systematic Literature survey was conducted on 80 scientific papers published in the last five years in research journals, confer-ences, leading workshops, the thesis of researchers, book chapters, and from high-rank websites. The work carried out in this study is an update in the previous systematic literature surveys with more focus on the latest trends in phishing detection techniques. This study enhances readers' understanding of dif-ferent types of phishing website detection techniques, the data sets used, and the comparative perfor-mance of algorithms used. Machine Learning techniques have been applied the most, i.e., 57 as per studies, according to the SLR. In addition, the survey revealed that while gathering the data sets, research -ers primarily accessed two sources: 53 studies accessed the PhishTank website (53 for the phishing data set) and 29 studies used Alexa's website for downloading legitimate data sets. Also, as per the literature survey, most studies used Machine Learning techniques; 31 used Random Forest Classifier. Finally, as per different studies, Convolution Neural Network (CNN) achieved the highest Accuracy, 99.98%, for detecting phishing websites.& COPY; 2023 The Author(s). Published by Elsevier B.V. on behalf of King Saud University. This is an open access article under the CC BY-NC-ND license (http://creativecommons.org/licenses/by-nc-nd/4.0/).
引用
收藏
页码:590 / 611
页数:22
相关论文
共 103 条
[1]   VisualPhishNet: Zero-Day PhishingWebsite Detection by Visual Similarity [J].
Abdelnabi, Sahar ;
Krombholz, Katharina ;
Fritz, Mario .
CCS '20: PROCEEDINGS OF THE 2020 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2020, :1681-1698
[2]  
Abedin Noor Faisal, 2020, Proceedings of the 3rd International Conference on Intelligent Sustainable Systems (ICISS 2020), P1125, DOI 10.1109/ICISS49785.2020.9315895
[3]   Using Case-Based Reasoning for Phishing Detection [J].
Abutair, Hassan Y. A. ;
Belghith, Abdelfettah .
8TH INTERNATIONAL CONFERENCE ON AMBIENT SYSTEMS, NETWORKS AND TECHNOLOGIES (ANT-2017) AND THE 7TH INTERNATIONAL CONFERENCE ON SUSTAINABLE ENERGY INFORMATION TECHNOLOGY (SEIT 2017), 2017, 109 :281-288
[4]   Intelligent web-phishing detection and protection scheme using integrated features of Images, frames and text [J].
Adebowale, M. A. ;
Lwin, K. T. ;
Sanchez, E. ;
Hossain, M. A. .
EXPERT SYSTEMS WITH APPLICATIONS, 2019, 115 :300-313
[5]  
Al-Ahmadi S, 2020, Int. J. Comput. Netw. Commun. (IJCNC), DOI 10.5121/ijcnc.2020.12503
[6]   Bypassing Detection of URL-based Phishing Attacks Using Generative Adversarial Deep Neural Networks [J].
AlEroud, Ahmed ;
Karabatis, George .
PROCEEDINGS OF THE SIXTH INTERNATIONAL WORKSHOP ON SECURITY AND PRIVACY ANALYTICS (IWSPA'20), 2020, :53-60
[7]   A Comprehensive Survey on Identification and Analysis of Phishing Website based on Machine Learning Methods [J].
Alkawaz, Mohammed Hazim ;
Steven, Stephanie Joanne ;
Hajamydeen, Asif Iqbal ;
Ramli, Rusyaizila .
11TH IEEE SYMPOSIUM ON COMPUTER APPLICATIONS & INDUSTRIAL ELECTRONICS (ISCAIE 2021), 2021, :82-87
[8]   Heuristic Phishing Detection and URL Checking Methodology Based on Scraping and Web Crawling [J].
Almeida, Romulo ;
Westphall, Carla .
2020 IEEE INTERNATIONAL CONFERENCE ON INTELLIGENCE AND SECURITY INFORMATICS (ISI), 2020, :277-282
[9]   AI Meta-Learners and Extra-Trees Algorithm for the Detection of Phishing Websites [J].
Alsariera, Yazan Ahmad ;
Adeyemo, Victor Elijah ;
Balogun, Abdullateef Oluwagbemiga ;
Alazzawi, Ammar Kareem .
IEEE ACCESS, 2020, 8 :142532-142542
[10]   Phishing website detection using support vector machines and nature-inspired optimization algorithms [J].
Anupam, Sagnik ;
Kar, Arpan Kumar .
TELECOMMUNICATION SYSTEMS, 2021, 76 (01) :17-32