Please use this identifier to cite or link to this item: http://hdl.handle.net/1959.14/160557
24 Visitors
30 Hits
0 Downloads
- Title
- Forensic characteristics of phishing : petty theft or organized crime?
- Related
- International Conference on Web Information Systems and Technologies (4th : 2008) (4 - 7 May 2008 : Funchal, Portugal)
- Related
- Cordeiro, José; Filipe, Joaquim and Hammoudi, Slimane. WEBIST 2008 : proceedings of the Fourth International Conference on Web Information Systems and Technologies, Vol. 1, p.149-157
- Related
- http://dblp.uni-trier.de/db/conf/webist/webist2008-1.html#McCombieWNW08
- Publisher
- Portugal : INSTICC Press
- Date
- 2008
- Author/Creator
- McCombie, Stephen
- Author/Creator
- Watters, Paul
- Author/Creator
- Ng, Alex
- Author/Creator
- Watson, Brett
- Description
- Phishing, as a means of pilfering private consumer information by deception, has become a major security concern for financial institutions and their customers. Gartner estimated losses in 2006 to phishing in the US were approximately USD$2.8 Billion. Little has been published on the forensic characteristics exhibited in phishing e-mail. We hypothesize that shared features of phishing e-mails can be used as the basis for grouping perpetrators using at least a common modus operandi, and at most, a level of criminal organization i.e., we suggest that phishing activities are carried out by a small number of highly specialized phishing gangs, rather than a large number of random and unrelated individuals using similar techniques. Analysis of repeated phishing e-mails samples at a major Australian financial institution using a criminal intelligence methodology - revealed that 6 groups, from a sample of 500,000 spam e-mails, could be uniquely classified by constructing simple decision rules based on observed feature sets, and that 3 groups were responsible for 86% of all incidents. These results suggest that at least for the institution concerned there appears to be a level of criminal organization in phishing attacks.
- Description
- 9 page(s)
- Subject Keyword
- phishing
- Subject Keyword
- attack grouping
- Subject Keyword
- organized crime
- Subject Keyword
- computer crime
- Subject Keyword
- ecrime forensics
- Resource Type
- conference paper
- Organisation
- Macquarie University. Dept. of Computing
- Identifier
- http://hdl.handle.net/1959.14/160557
- Identifier
- ISBN:9789898111265
- Identifier
- mq-rm-2007007165
- Language
- eng
- Reviewed
