Canary in Twitter Mine: Collecting Phishing Reports from Experts and Non-experts

03/28/2023
by   Hiroki Nakano, et al.
0

The rise in phishing attacks via e-mail and short message service (SMS) has not slowed down at all. The first thing we need to do to combat the ever-increasing number of phishing attacks is to collect and characterize more phishing cases that reach end users. Without understanding these characteristics, anti-phishing countermeasures cannot evolve. In this study, we propose an approach using Twitter as a new observation point to immediately collect and characterize phishing cases via e-mail and SMS that evade countermeasures and reach users. Specifically, we propose CrowdCanary, a system capable of structurally and accurately extracting phishing information (e.g., URLs and domains) from tweets about phishing by users who have actually discovered or encountered it. In our three months of live operation, CrowdCanary identified 35,432 phishing URLs out of 38,935 phishing reports. We confirmed that 31,960 (90.2 anti-virus engine, demonstrating that CrowdCanary is superior to existing systems in both accuracy and volume of threat extraction. We also analyzed users who shared phishing threats by utilizing the extracted phishing URLs and categorized them into two distinct groups - namely, experts and non-experts. As a result, we found that CrowdCanary could collect information that is specifically included in non-expert reports, such as information shared only by the company brand name in the tweet, information about phishing attacks that we find only in the image of the tweet, and information about the landing page before the redirect.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
11/13/2021

Evaluating the effectiveness of Phishing Reports on Twitter

Phishing attacks are an increasingly potent web-based threat, with nearl...
research
03/24/2018

Characterizing Diseases and disorders in Gay Users' tweets

A lack of information exists about the health issues of lesbian, gay, bi...
research
07/29/2022

GoodFATR: A Platform for Automated Threat Report Collection and IOC Extraction

To adapt to a constantly evolving landscape of cyber threats, organizati...
research
02/24/2017

Measuring #GamerGate: A Tale of Hate, Sexism, and Bullying

Over the past few years, online aggression and abusive behaviors have oc...
research
10/21/2021

A Python Package to Detect Anti-Vaccine Users on Twitter

Vaccine hesitancy has a long history but has been recently driven by the...
research
12/05/2022

A Large-Scale Analysis of Phishing Websites Hosted on Free Web Hosting Domains

While phishing attacks have evolved to utilize several obfuscation tacti...

Please sign up or login with your details

Forgot password? Click here to reset