0% Complete
Home
/
15th International Conference on Computer and Knowledge Engineering
Multi-Layered Defense Against Modern Phishing: A Dual-Sandbox and CDR Approach
Authors :
Mahdi Seyfipoor
1
Mohammad Mahdi Eskandari
2
1- School of Electrical and Computer Engineering, University of Tehran, Tehran, Iran
2- Computer Engineering, University of Tehran, Tehran, Iran
Keywords :
phishing،cybersecurity،sandbox،content disarm and reconstruction،Office document
Abstract :
Phishing attacks are a form of social engineering. They exploit human behavior to gain initial access to an organization. In this paper, we examine two common attack vectors: phishing websites and Office documents (e.g., Word and Excel), which are widely used in organizations. To counter these attacks, this paper proposes a dual sandbox architecture. It uses the Virtual Network Computing (VNC) protocol for websites and the Remote Desktop Protocol (RDP) for Office documents. Another approach is content disarm and reconstruction (CDR) for Office documents. This method parses different file types and eliminates potential threats. The CDR-enhanced sandbox performed strongly on Office, achieving 98.14% Recall and a False Positive Rate (FPR) of 0.5%. The website sandbox also achieved 94% Recall and an FPR of 6%, which is due to strict input validation, filtering of user inputs, and restrictions on files downloaded from the Internet. These findings confirm the defensive capabilities of architecture.
Papers List
List of archived papers
Evaluation of Efficient Electrocardiomatrix-based Identification Using Deep Learning Methods
Amirhossein Safari - Narges Mokhtari - Mohsen Hooshmand - Sadegh Sadeghi - Peyman Pahlevani
Attentional Bi-LSTM for Multivariate Time Series Forecasting on Edge Devices: A Case Study on NanoPi Neo Plus2
Navid Hajizadeh - Saeed Yazdani - Sara Ershadi-Nasab
Enhancing Cloud Security with Federated CNN-LSTM: A Novel Approach to Intrusion Detection
Reyhaneh Ilaghi - Raheleh Ilaghi - Fereshteh Rahmani - Seyyed hamid Ghafoori
Multi-Layer Collaborative Graph with BPR Similarity Embedding for Recommender System
Mostafa Ghorbani - Azadeh Mansouri
Camouflage Object Segmentation with Attention-Guided Pix2Pix and Boundary Awareness
Erfan Akbarnezhad Sany - Fatemeh Naserizadeh - Parsa Sinichi - Seyyed Abed Hosseini
Semi-Supervised Supply Chain Fraud Detection with Unsupervised Pre-Filtering
Fatemeh Moradi - Mehran Tarif - Mohammadhossein Homaei
A Novel Deformable Registration Method for Cerebral Magnetic Resonance Images
Bahareh Asadpour Dasht Bayaz - Mahdi Saadatmand - Fabrice Wallois
Characterizing Microsatellite Distribution Patterns Across Distinct Gene Categories in Human
Elahe Mehrazin - Mahmoud Naghibzadeh - Sara Jamali
Ensemble-Based Fraud Detection: A Robust Approach Evaluated on IEEE-CIS
Fatemeh Moradi - Mehran Tarif - Mohammadhossein Homaei
Optimizing Magnetic Sensory Configuration for Gesture Recognition in Bionic Hands
Mehdi Alimohammadi - Arman Abasian - Mohammad Reza Akbarzadeh Totonchi
more
Samin Hamayesh - Version 44.5.0