Phishing Detection: A Literature Survey

作者:Khonji Mahmoud*; Iraqi Youssef; Jones Andrew
来源:IEEE Communications Surveys and Tutorials, 2013, 15(4): 2091-2121.
DOI:10.1109/SURV.2013.032213.00009

摘要

This article surveys the literature on the detection of phishing attacks. Phishing attacks target vulnerabilities that exist in systems due to the human factor. Many cyber attacks are spread via mechanisms that exploit weaknesses found in end-users, which makes users the weakest element in the security chain. The phishing problem is broad and no single silver-bullet solution exists to mitigate all the vulnerabilities effectively, thus multiple techniques are often implemented to mitigate specific attacks. This paper aims at surveying many of the recently proposed phishing mitigation techniques. A high-level overview of various categories of phishing mitigation techniques is also presented, such as: detection, offensive defense, correction, and prevention, which we belief is critical to present where the phishing detection techniques fit in the overall mitigation process.

  • 出版日期2013