Protection Mechanisms Against Phishing Attacks

Plössl, Klaus and Federrath, Hannes and Nowey, Thomas (2005) Protection Mechanisms Against Phishing Attacks. In: Hutchison, David, (ed.) Trust, Privacy and Security in Digital Business. Lecture Notes in Computer Science, 3592. Springer, Berlin, pp. 20-29. ISBN 978-3-540-28224-2.

[img]
Preview

PDF - Requires a PDF viewer such as GSview, Xpdf or Adobe Acrobat Reader
291Kb

Other URL: http://www-sec.uni-regensburg.de/publ/2005/PlFN2005TrustBus05Phishing.pdf

Abstract

Approaches against Phishing can be classified into modifications of the traditional PIN/TAN-authentication on the one hand and approaches that try to reduce the probability of a scammer being successful without changing the existing PIN/TAN-method on the other hand. We present a new approach, based on challenge-response-authentication. Since our proposal does not require any new hardware on the client side, it can be implemented with little additional cost by financial institutions or other web retailers and therefore is a good compromise compared to the other approaches. A big drawback is that it doesn’t protect against man-in-the-middle attacks but most of the other approaches don’t either.

Item Type:Book Section
Institutions: Business, Economics and Information Systems > Institut für Wirtschaftsinformatik > Lehrstuhl für Wirtschaftsinformatik IV - Management der Informationssicherheit (Prof. Dr.-Ing. Hannes Federrath)
Identification Number:
ValueType
10.1007/11537878DOI
Keywords:Security in general (overviews/surveys)
Subjects:300 Social sciences > 330 Economics
Status:Published
Refereed:Unknown
Created at the University of Regensburg:Yes
Owner:Lst-Info-Sec Webmaster
Deposited On:12 Dec 2008 12:33
Last Modified:20 Jul 2011 23:23
Item ID:5151
Owner Only: item control page