Enhanced website phishing detection based on the cyber kill chain and cloud computing
Abstract
Crimeware-as-a-service (CaaS) presents a growing cybersecurity threat by facilitating the acquisition of tools for website phishing attacks. Detecting these attacks requires effective techniques to obtain accurate results in real time. Cloud machine learning (CML) emerged as a promising solution with the powerful tools of amazon web services (AWS). This study proposes a novel approach combining cyber kill chain concept with AWS technologies to enhance website phishing detection, using AWS SageMaker to preprocess an 11,430 uniform resource locators (URL) dataset and train 3 algorithms, which are: decision tree (DT), random forest (RF), and support vector machine (SVM), evaluate their performance through batch transform, and deploy them as separate endpoints. Prediction functions are then conducted on each endpoint and compared to batch transform results. Our findings demonstrate that the combination of the cyber kill chain concept and AWS CML significantly enhances website phishing detection by achieving results of 97% for RF in 0.48 seconds, 94% for SVM in 0.94 seconds, and 93% for DT in 0.52 seconds. By leveraging CML algorithms and breaking down attacks into stages, our approach identifies and disrupts attacks earlier, preventing damage. This research highlights the value of our approach in improving cybersecurity and protecting against website phishing attacks.
Keywords
AWS; Crimeware-as-a-service; Cyber kill chain; Decision tree; Random forest; Support vector machine; Website phishing
Full Text:
PDFDOI: http://doi.org/10.11591/ijeecs.v32.i1.pp517-529
Refbacks
- There are currently no refbacks.
This work is licensed under a Creative Commons Attribution-ShareAlike 4.0 International License.
Indonesian Journal of Electrical Engineering and Computer Science (IJEECS)
p-ISSN: 2502-4752, e-ISSN: 2502-4760
This journal is published by the Institute of Advanced Engineering and Science (IAES) in collaboration with Intelektual Pustaka Media Utama (IPMU).