Preventing Phishing Attacks: A Novel Approach

Tushar Goyal, Alay Vakil, Dhrumil Parmar, Rishit Jain, Devesh C. Jinwala · International Journal of Computer Applications · 2015

Phishing is the process of acquiring sensitive information by masquerading as a sensitive entity.Such attacks in turn make it possible for an adversary to orchestrate Denial of Service (DOS) attacks or have sensitive data leaked from an application.With increasing reliance of people on internet based transactions, phishing attacks have also become more sophisticated and have caused large-scale material and trust losses.Hence, dealing with phishing attacks has become a critical issue.Many anti-phishing approaches that are either client-centric or server-centric involving either toolbars, databases or blacklisting have been proposed in the literature.However, we observe that there is a need for an approach that involves both the client and server, and integrates security with the primary task of the user.In this paper, we propose and experiment with an anti-phishing approach that includes server authentication in the client login process.To the best of our knowledge, ours is a novel approach involving server authentication to prevent phishing attacks successfully.

Read the paper · More papers on PaperTik