Sandboxed navigation and deep inspection of suspicious links reported by Humans as a Security Sensor (HaaSS)

dc.contributor.authorZanotto, Andrea
dc.contributor.departmentfi=Tietotekniikan laitos|en=Department of Computing|
dc.contributor.facultyfi=Teknillinen tiedekunta|en=Faculty of Technology|
dc.contributor.studysubjectfi=Tietotekniikka|en=Information and Communication Technology|
dc.date.accessioned2022-06-10T21:01:48Z
dc.date.available2022-06-10T21:01:48Z
dc.date.issued2022-06-06
dc.description.abstractThis thesis is part of a long-lasting research carried out in the field of Humans as a Security Sensor. In this thesis, I propose a solution to help companies to fight back against phishing, in particular, targeted and highly-contextualized attacks also known as "spare phishing". The thesis aims to develop a deep inspection module of individual emails submitted to the system by human sensors. As soon as a suspicious email has been flagged, it is passed to the deep inspection module that takes care of navigating every URL while collecting evidence and marks of malicious activities. The characteristic of this project is that it mimics the behavior of a real human user while navigating. It does not stop at the initial page, instead, it follows the redirects and collects page links to further inspect them afterward. My work focuses only on the automated navigation and deep inspection part and integrates it with an existing project that provides emails to analyze and manages the human sensor network. The idea is related to the concept of a human honeypot and provides a toolset that can help gather precious information to augment phishing user reports. We design a system that can navigate potentially malicious URLs as a human user would do. It opens links and browses through the webpages while collecting data, with the crucial difference that all the navigation is carried out fully automatically and in a protected environment isolated from the rest, so that any infection remains confined.
dc.format.extent78
dc.identifier.olddbid171204
dc.identifier.oldhandle10024/154309
dc.identifier.urihttps://www.utupub.fi/handle/11111/16230
dc.identifier.urnURN:NBN:fi-fe2022061045619
dc.language.isoeng
dc.rightsfi=Julkaisu on tekijänoikeussäännösten alainen. Teosta voi lukea ja tulostaa henkilökohtaista käyttöä varten. Käyttö kaupallisiin tarkoituksiin on kielletty.|en=This publication is copyrighted. You may download, display and print it for Your own personal use. Commercial use is prohibited.|
dc.rights.accessrightsavoin
dc.source.identifierhttps://www.utupub.fi/handle/10024/154309
dc.subjectphishing, spear-phishing, human-honeypot, HaaSS, social engineering
dc.titleSandboxed navigation and deep inspection of suspicious links reported by Humans as a Security Sensor (HaaSS)
dc.type.ontasotfi=Diplomityö|en=Master's thesis|

Tiedostot

Näytetään 1 - 1 / 1
Ladataan...
Name:
UTU_Thesis-eb968d44.pdf
Size:
822.07 KB
Format:
Adobe Portable Document Format