2008Unpublished venueRequires access

A phishing vulnerability analysis of web based systems

Weider D. Yu, Shruti Nargundkar, Nagapriya Tiruthani

Open publisher page 60 citations

Abstract

Phishing, a criminal act of collecting personal, bank and credit card information by sending out forged e-mails with fake websites, has become the most popular practice among the criminals of the Web. Phishing attacks are becoming more and more sophisticated and are constantly on the rise. The impact of phishing is quite drastic since it involves the threat of identity theft and financial losses. A lot of groups and organizations are trying to study this act and also inform and update the public on what are the latest tactics being used in the phishing sector. According to industry estimates, phishing attacks are on the rise every year and the existing anti phishing solutions fall short in detecting phishing. Moreover, phishers come up with innovative methods of phishing everyday making it even more difficult to detect and prevent phishing. This paper explains in detail the various methods used in phishing. We perform a root-cause analysis of the methods used in phishing, the motivation for phishing and in the process come up with a fishbone diagram outlining the causes and methodologies used in phishing. This analysis is aimed at helping developers to design and develop better anti phishing solutions.

About this research paper

What this paper is about

Phishing, a criminal act of collecting personal, bank and credit card information by sending out forged e-mails with fake websites, has become the most popular practice among the criminals of the Web. Phishing attacks are becoming more and more sophisticated and are constantly on the rise. The impact of phishing is quite drastic since it involves the threat of identity theft and financial losses. A lot of groups and organizations are trying to study this act and also inform and update the public on what are the latest tactics being used in the phishing sector. According to industry estimates, phishing attacks are on the rise every year and the existing anti phishing solutions fall short in detecting phishing. Moreover, phishers come up with innovative methods of phishing everyday making it even more difficult to detect and prevent phishing. This paper explains in detail the various methods used in phishing. We perform a root-cause analysis of the methods used in phishing, the motivation for phishing and in the process come up with a fishbone diagram outlining the causes and methodologies used in phishing. This analysis is aimed at helping developers to design and develop better anti phishing solutions.

Why it matters

OpenAlex reports 60 citations for this work. Citation counts describe recorded attention and do not establish research quality.

Key contribution

A contribution statement is not available in the OpenAlex record.

Method / approach

Method details are not available in the OpenAlex metadata.

Main findings

Findings are not separately available in the OpenAlex metadata.

Limitations

Limitations are not available in the OpenAlex metadata.

Applications

Application details are not available in the OpenAlex metadata.

Available abstract

Phishing, a criminal act of collecting personal, bank and credit card information by sending out forged e-mails with fake websites, has become the most popular practice among the criminals of the Web. Phishing attacks are becoming more and more sophisticated and are constantly on the rise. The impact of phishing is quite drastic since it involves the threat of identity theft and financial losses. A lot of groups and organizations are trying to study this act and also inform and update the public on what are the latest tactics being used in the phishing sector. According to industry estimates, phishing attacks are on the rise every year and the existing anti phishing solutions fall short in detecting phishing. Moreover, phishers come up with innovative methods of phishing everyday making it even more difficult to detect and prevent phishing. This paper explains in detail the various methods used in phishing. We perform a root-cause analysis of the methods used in phishing, the motivation for phishing and in the process come up with a fishbone diagram outlining the causes and methodologies used in phishing. This analysis is aimed at helping developers to design and develop better anti phishing solutions.

Key concepts: Phishing, Identity theft, Computer science, Computer security, Credit card, Internet privacy, Vulnerability (computing), World Wide Web

Related papers

Back to paper searchBrowse research topicsOriginal source
A phishing vulnerability analysis of web based systems — Research Paper | ScholarLens