Skip to main navigation Skip to search Skip to main content

Alice, what did you do last time? Fighting phishing using past activity tests

  • Foundation for Research and Technology-Hellas

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

2 Scopus citations

Abstract

Phishing attacks are one of the most crucial modern security threats in the current World Wide Web. An adversary may clone a legitimate Web site and lure a user to submit her credentials to the malicious construct. The adversary may then use the stolen credentials to the authentic site. In this paper we present a novel idea to fight phishing using Past Activity Tests (PACTs). In a nutshell, PACTs take advantage of the fact that the user has accessed at least once her account in the past, contrary to the phisher who accesses the user's account for the first time. Thus, a user can answer a question relative to her past activity, but the attacker can not.

Original languageEnglish
Title of host publicationProceedings of the 3rd European Conference on Computer Network Defense
Pages107-117
Number of pages11
DOIs
StatePublished - 2009
Event3rd European Conference on Computer Network Defense, EC2ND 2007 - Heraklion, Crete, Greece
Duration: Oct 4 2007Oct 5 2007

Publication series

NameLecture Notes in Electrical Engineering
Volume30 LNEE
ISSN (Print)1876-1100
ISSN (Electronic)1876-1119

Conference

Conference3rd European Conference on Computer Network Defense, EC2ND 2007
Country/TerritoryGreece
CityHeraklion, Crete
Period10/4/0710/5/07

Fingerprint

Dive into the research topics of 'Alice, what did you do last time? Fighting phishing using past activity tests'. Together they form a unique fingerprint.

Cite this