0% Complete
Home
/
15th International Conference on Computer and Knowledge Engineering
Multi-Layered Defense Against Modern Phishing: A Dual-Sandbox and CDR Approach
Authors :
Mahdi Seyfipoor
1
Mohammad Mahdi Eskandari
2
1- School of Electrical and Computer Engineering, University of Tehran, Tehran, Iran
2- Computer Engineering, University of Tehran, Tehran, Iran
Keywords :
phishing،cybersecurity،sandbox،content disarm and reconstruction،Office document
Abstract :
Phishing attacks are a form of social engineering. They exploit human behavior to gain initial access to an organization. In this paper, we examine two common attack vectors: phishing websites and Office documents (e.g., Word and Excel), which are widely used in organizations. To counter these attacks, this paper proposes a dual sandbox architecture. It uses the Virtual Network Computing (VNC) protocol for websites and the Remote Desktop Protocol (RDP) for Office documents. Another approach is content disarm and reconstruction (CDR) for Office documents. This method parses different file types and eliminates potential threats. The CDR-enhanced sandbox performed strongly on Office, achieving 98.14% Recall and a False Positive Rate (FPR) of 0.5%. The website sandbox also achieved 94% Recall and an FPR of 6%, which is due to strict input validation, filtering of user inputs, and restrictions on files downloaded from the Internet. These findings confirm the defensive capabilities of architecture.
Papers List
List of archived papers
A Novel Method For Fake News Detection Based on Propagation Tree
Mansour Davoudi - Mohammad Reza Moosavi - Mohammad Hadi Sadreddini
MCRS-SAE : multi criteria recommender system based on sparse autoencoder
Amir reza Kalantarnezhad - Javad Hamidzadeh
Deep Learning Feature Extraction for COVID-19 Detection Algorithm using Computerized Tomography Scan
Maisarah Mohd Sufian - Ervin Gubin Moung - Chong Joon Hou - Ali Farzamnia
Fine-tuned Generative Adversarial Network-based Model for Medical Image Super-Resolution
Alireza Aghelan - Modjtaba Rouhani
Joint mobility-aware offloading and UAV position optimization in Blockchain-enabled 5G
Zeinab Rabbani - Zeinab Movahedi
PersianILP: Construction and Evaluation of a Standard Persian Dataset for Inductive Link Prediction
Mohammad Rahimi - Afsaneh Fatemi - Ahmad Baraani
Reversible Data Insertion in Encryption Domain Based on Reduced Quad Difference Expansion
Alireza Ghaemi - Mohammad Zare Ehteshami - Amirhossein Ghaemi
Data-Optimized Dry Rock Property Prediction Using Ensemble and Kernel-Based ML Methods
Esmael Makarian - Hassanreza Ghasemitabar - Alireza Behinrad - Mahdi Fathi - Andisheh Alimoradi - Ayub Elyasi
Stock market prediction using multi-objective optimization
Mahshid Zolfaghari - Hamid Fadishei - Mohsen Tajgardan - Reza Khoshkangini
AL-YOLO: Accurate and Lightweight Vehicle and Pedestrian Detector in Foggy Weather
Behdad Sadeghian Pour - Hamidreza Mohammadi Jozani - Shahriar Baradaran Shokouhi
more
Samin Hamayesh - Version 43.7.0