Intelligent Phishing Website Detection System using Fuzzy Techniques
Abstract
Phishing websites are forged web pages that are created by malicious
people to mimic web pages of real websites and it attempts to defraud people of
their personal information. Detecting and identifying Phishing websites is
really a complex and dynamic problem involving many factors and criteria, and because
of the subjective considerations and the ambiguities involved in the detection,
Fuzzy Logic model can be an effective tool in assessing and identifying
phishing websites than any other traditional tool since it offers a more
natural way of dealing with quality factors rather than exact values. In this
paper, we present novel approach to overcome the ‘fuzziness’ in traditional
website phishing risk assessment and propose an intelligent resilient and effective
model for detecting phishing websites. The proposed model is based on FL
operators which is used to characterize the website phishing factors and
indicators as fuzzy variables and produces six measures and criteria’s of
website phishing attack dimensions with a layer structure. Our experimental
results showed the significance and importance of the phishing website criteria
(URL & Domain Identity) represented by layer one, and the variety influence
of the phishing characteristic layers on the final phishing website rate.
Existing System
Phishing is a
relatively new Internet crime in comparison with other forms, e.g., virus and
hacking. More and more phishing Web pages have been found in recent years in an
accelerative way.The word phishing from the phrase “website phishing” is a
variation on the word “fishing.” The idea is that bait is thrown out with the
hopes that a user will grab it and bite into it just like the fish. In most
cases, bait is either an e-mail or an instant messaging site, which will take
the user to hostile phishing websites
Disadvantages
Unwary Internet users
may be easily deceived by this kind of scam. Victims of phishing Web pages may
expose their bank account, password, credit card number, or other important
information to the phishing Web page owners. The impact is the breach of
information security through the compromise of confidential data and the
victims may finally suffer losses of money or other kinds.
Proposed system
Phishing website is a
very complicate and complex issue to understand and to analyze, since it is
joining technical and social problem with each other for which there is no
known single silver bullet to solve it entirely. The motivation behind my study
is to create a resilient and effective method that uses fuzzy logic to quantify
and qualify all the website phishing characteristics and factors in order to
detect phishing websites to assess whether phishing activity is taking place or
not.
Advantages
of Proposed System:
The advantage of the
fuzzy approach is that it enables processing of vaguely defined variables, and
variables whose relationships cannot be defined by mathematical relationships. Fuzzy
logic can incorporate expert human judgment
to define those variable and their relationships.
SYSTEM
REQUIREMENT
Hardware Requirements
Processor : Pentium III /
IV
Hard Disk : 40 GB
Ram : 256 MB
Monitor : 15VGA Color
Mouse : Ball / Optical
Keyboard :
102 Keys
Software
Requirements
Operating System: Windows
XP professional
Front End : Microsoft Visual Studio .Net 2005
Language : Visual Basic.Net-2005