首页> 外文会议>International Conference on Financial Cryptography and Data Security >Evil Searching: Compromise and Recompromise of Internet Hosts for Phishing
【24h】

Evil Searching: Compromise and Recompromise of Internet Hosts for Phishing

机译:邪恶的搜索:妥协和妥协网络钓鱼的互联网主机

获取原文

摘要

Attackers compromise web servers in order to host fraudulent content, such as malware and phishing websites. While the techniques used to compromise websites are widely discussed and categorized, analysis of the methods used by attackers to identify targets has remained anecdotal. In this paper, we study the use of search engines to locate potentially vulnerable hosts. We present empirical evidence from the logs of websites used for phishing to demonstrate attackers' widespread use of search terms which seek out susceptible web servers. We establish that at least 18% of website compromises are triggered by these searches. Many websites are repeatedly compromised whenever the root cause of the vulnerability is not addressed. We find that 19% of phishing websites are recompromised within six months, and the rate of recompromise is much higher if they have been identified through web search. By contrast, other public sources of information about phishing websites are not currently raising recompromise rates; we find that phishing websites placed onto a public blacklist are recompromised no more frequently than websites only known within closed communities.
机译:攻击者会危及Web服务器,以便托管欺诈内容,例如恶意软件和网络钓鱼网站。虽然用于危及网站的技术被广泛讨论和分类,但对攻击者使用的方法分析以识别目标的方法仍然是轶事。在本文中,我们研究了搜索引擎的使用来定位潜在的弱势群体。我们从用于网络钓鱼的网站的日志提出了实证证据,以展示攻击者的广泛使用寻找易感Web服务器的搜索条件。我们确定这些搜索至少18%的网站妥协。只要没有解决漏洞的根本原因,许多网站都会反复损害。我们发现,19%的网络钓鱼网站在六个月内推荐推荐,如果通过网络搜索确定它们的建议速度要高得多。相比之下,其他关于网络钓鱼网站的信息来源目前没有提高建议率;我们发现,放在公共黑名单上的网络钓鱼网站不会比仅在封闭式社区内知名的网站更频繁地推荐。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号