AutoBLG: Automatic URL blacklist generator using search space expansion and filters

Bo Sun, Mitsuaki Akiyama, Takeshi Yagi, Mitsuhiro Hatada, Tatsuya Mori

研究成果: Conference contribution

8 被引用数 (Scopus)

抄録

Modern web users are exposed to a browser security threat called drive-by-download attacks that occur by simply visiting a malicious Uniform Resource Locator (URL) that embeds code to exploit web browser vulnerabilities. Many web users tend to click such URLs without considering the underlying threats. URL blacklists are an effective countermeasure to such browser-Targeted attacks. URLs are frequently updated; therefore, collecting fresh malicious URLs is essential to ensure the effectiveness of a URL blacklist. We propose a framework called automatic blacklist generator (AutoBLG) that automatically identifies new malicious URLs using a given existing URL blacklist. The key idea of AutoBLG is expanding the search space of web pages while reducing the amount of URLs to be analyzed by applying several pre-filters to accelerate the process of generating blacklists. Auto-BLG comprises three primary primitives: URL expansion, URL filtration, and URL verification. Through extensive analysis using a high-performance web client honeypot, we demonstrate that AutoBLG can successfully extract new and previously unknown drive-by-download URLs.

本文言語English
ホスト出版物のタイトル20th IEEE Symposium on Computers and Communication, ISCC 2015
出版社Institute of Electrical and Electronics Engineers Inc.
ページ625-631
ページ数7
ISBN(電子版)9781467371940
DOI
出版ステータスPublished - 2016 2月 11
イベント20th IEEE Symposium on Computers and Communication, ISCC 2015 - Larnaca, Cyprus
継続期間: 2015 7月 62015 7月 9

出版物シリーズ

名前Proceedings - IEEE Symposium on Computers and Communications
2016-February
ISSN(印刷版)1530-1346

Other

Other20th IEEE Symposium on Computers and Communication, ISCC 2015
国/地域Cyprus
CityLarnaca
Period15/7/615/7/9

ASJC Scopus subject areas

  • ソフトウェア
  • 信号処理
  • 数学 (全般)
  • コンピュータ サイエンスの応用
  • コンピュータ ネットワークおよび通信

フィンガープリント

「AutoBLG: Automatic URL blacklist generator using search space expansion and filters」の研究トピックを掘り下げます。これらがまとまってユニークなフィンガープリントを構成します。

引用スタイル