arrow
Return

Learning to Detect Malicious URLs

delete2011-05-06
delete131
delete
OA
AI
J
Justin Ma *
L
Lawrence K. Saul
S
Stefan Savage
G
Geoffrey M. Voelker
DOI:10.1145/1961189.1961202delete
deleteOriginal
deleteShare
deleteSave
View PDF
Abstract

Abstract

En 中文
Malicious Web sites are a cornerstone of Internet criminal activities. The dangers of these sites have created a demand for safeguards that protect end-users from visiting them. This article explores how to detect malicious Web sites from the lexical and host-based features of their URLs. We show that this problem lends itself naturally to modern algorithms for online learning. Online algorithms not only process large numbers of URLs more efficiently than batch algorithms, they also adapt more quickly to new features in the continuously evolving distribution of malicious URLs. We develop a real-time system for gathering URL features and pair it with a real-time feed of labeled URLs from a large Web mail provider. From these features and labels, we are able to train an online classifier that detects malicious Web sites with 99% accuracy over a balanced dataset.
Keywords:
Algorithms
Security
Online learning
malicious Web sites
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

ACM Transactions on Intelligent Systems and Technology cover
ACM Transactions on Intelligent Systems and Technology
IF:
6.6
Papers:
1.5K
Citations:
6.2K

Organization

U
University of California Berkeley
Scholars:
3.5W
Papers: 2.8W
Citations: 11.3W
University of California System cover
University of California System
Scholars:
37.5W
Papers: 33.7W
Citations: 6.6K