TARU PUBLICATIONS
Journal of Discrete Mathematical Sciences and Cryptography cover
Hybrid ·Peer-reviewed·ISSN (Online): 2169-0065·ISSN (Print): 0972-0529

Monthly Journal: Publishes theoretical and applied research in all areas of Discrete Mathematical Sciences, Cryptography, Combinatorics, Elliptic Curves and Information Security.

Issues up to 2022 co-published with and available at:Taylor & Francis Online
submissions@tarupublications.com
Open Access Research Article

Discrete mathematical models for enhancing cybersecurity : A mathematical and statistical analysis of machine learning approaches in phishing attack detection

, , , *

* Corresponding author · click or hover a name for details

pp. 569–599Vol. 27Issue 2-BMarch 2024DOI: 10.47974/JDMSC-1893 Crossmark XML
Published Online:
11 Apr 2024
Article type:
Research Article
Language:
EN
Article no.:
JDMSC-1893
Pages:
569–599

Abstract

This paper presents a discreate mathematical modelling of cybersecurity phishing attack detection methodologies, emphasizing the crucial role of continual advancements in detection methods amidst the pervasive threat of phishing attacks in the cybersecurity landscape. Leveraging mathematical modeling and machine learning algorithms, the study employs three distinct datasets—Mendeley, URL tokenized, and a merged dataset integrating both. Multiple machine learning algorithms, including Logistic Regression, k-Nearest Neighbors, Support Vector Machines, Random Forest, Gradient Boosting Machines, Neural Networks, CatBoost, and XGBoost, are systematically applied to evaluate their efficacy. In the original Mendeley dataset, XGBoost achieves a top accuracy of 97.24%, along with CatBoost and Random Forest exceeding 97%. Post-preprocessing, CatBoost leads with an accuracy of 97.28%, showcasing superior precision, sensitivity, and F-score. Despite slight accuracy reductions post-preprocessing, models consistently achieve over 94% accuracy on the preprocessed Mendeley dataset, highlighting the substantial impact of preprocessing. Tokenized URLs exhibit comparatively lower performance, with the highest accuracy at 91.95%, emphasizing the challenges associated with this approach. The combined dataset proves optimal for most models, with XGBoost and SVM achieving the highest overall accuracy at 97.68%. SVM excels in sensitivity and specificity, while XGBoost excels in precision. The merged dataset significantly enhances accuracy, sensitivity, specificity, and precision, underscoring its pivotal role in refining predictive capabilities for identifying phishing websites. The results section provides a detailed overview of machine learning model performance on different datasets. CatBoost emerges as a standout performer on the preprocessed Mendeley dataset. The tokenized URLs offer valuable insights into associated challenges, and the combined dataset proves effective for various models. Confusion matrices, ROC curves, and Precision-Recall curves provide nuanced perspectives on model behavior, emphasizing the need for ongoing refinement and investigation into misclassification patterns to enhance model effectiveness in combating phishing threats.

Keywords

Subject Classifications

68T0768M25

References

[1] Gandotra, E., & Gupta, D., An efficient approach for phishing detection using machine learning. Multimedia Security: Algorithm Development, Analysis and Applications, 239-253 (2021).
[2] Omar, Asmaa Reda, Shereen Taie, and Masoud E. Shaheen. “From Phishing Behavior Analysis and Feature Selection to Enhance Prediction Rate in Phishing Detection.” International Journal of Advanced Computer Science and Applications 14.5 (2023).
[3] Uddin, Md Milon, et al. “A Comparative Analysis of Machine Learning-Based Website Phishing Detection Using URL Information.” 2022 5th International Conference on Pattern Recognition and Artificial Intelligence (PRAI). IEEE (2022).
[4] Ojewumi, T. O., Ogunleye, G. O., Oguntunde, B. O., Folorunsho, O., Fashoto, S. G., & Ogbu, N. J. S. A., Performance evaluation of machine learning tools for detection of phishing attacks on web pages. Scientific African, 16, e01165 (2022).
[5] Jain, A. K., & Gupta, B. B., Comparative analysis of features based machine learning approaches for phishing detection. In 2016 3rd international conference on computing for sustainable global development (INDIACom)(pp. 2125-2130). IEEE (2016, March).
[6] Niakanlahiji, A., Chu, B. T., & Al-Shaer, E., Phishmon: A machine learning framework for detecting phishing webpages. In 2018 IEEE International Conference on Intelligence and Security Informatics (ISI) (pp. 220-225). IEEE (2018, November).
[7] Deshpande, A., Pedamkar, O., Chaudhary, N., & Borde, S., Detection of phishing websites using Machine Learning. International Journal of Engineering Research & Technology (IJERT), 10(05) (2021).
[8] Almseidin, M., Zuraiq, A. A., Al-Kasassbeh, M., & Alnidami, N., Phishing detection based on machine learning and feature selection methods (2019).
[9] Li, Y., Yang, Z., Chen, X., Yuan, H., & Liu, W., A stacking model using URL and HTML features for phishing webpage detection. Future Generation Computer Systems, 94, 27-39 (2019).
[10] Hannousse, A., & Yahiouche, S., Towards benchmark datasets for machine learning based website phishing detection: An experimental study. Engineering Applications of Artificial Intelligence, 104, 104347 (2021).
[11] Mohamed, G., Visumathi, J., Mahdal, M., Anand, J., & Elangovan, M., An effective and secure mechanism for phishing attacks using a machine learning approach. Processes, 10(7), 1356 (2022).
[12] Abdelhamid, N., Thabtah, F., & Abdel-Jaber, H., Phishing detection: A recent intelligent machine learning comparison based on models content and features. In 2017 IEEE international conference on intelligence and security informatics (ISI) (pp. 72-77). IEEE (2017, July).
[13] Amit Kumar Gupta, Pushpa Gothwal, Dinesh Goyal & Carlos M. Travieso-Gonzalez. IoT-Galvanized pandemic special E-Toilet for generation of sanitized environment, Journal of Discrete Mathematical Sciences and Cryptography (2022), DOI: 10.1080/09720529.2022.2068607.
[14] Amit Kumar Gupta, Vijander Singh, Priya Mathur & Carlos M. Travieso-Gonzalez. Prediction of COVID-19 pandemic measuring criteria using support vector machine, prophet and linear regression models in Indian scenario, Journal of Interdisciplinary Mathematics (2020), DOI: https://doi.org/10.1080/09720502.2020.1833458.
[15] Kumar, Anil , Gupta, Amit Kumar, Panwar, Deepak , Chaurasia, Sandeep & Goyal, Dinesh. Operating system security with discrete mathematical structure for secure round robin scheduling method with intelligent time quantum, Journal of Discrete Mathematical Sciences and Cryptography, 26:5, 1519–1533 (2023), DOI: https://doi.org/10.47974/JDMSC-1816.
[16] Joshi, Ruchi, Mathur, Priya, Gupta, Amit Kumar, Singh, Suyesha, Paliwal, Vismita & Nayar, Sejal. Mathematical modeling of intelligent system for predicting effectiveness of premenstrual syndrome, Journal of Interdisciplinary Mathematics, 26:3, 551-562 (2023), DOI: https://doi.org/10.47974/JIM-1681 (Q2 Journal).
[17] Hannousse, Abdelhakim; Yahiouche, Salima, “Web page phishing detection”, Mendeley Data, V3 (2021), doi: 10.17632/c2gw7fy2j4.3.
[18] Anil Kumar & Sandeep Kumar Sharma. Information cryptography using cellular automata and digital image processing, Journal of Discrete Mathematical Sciences and Cryptography, 25:4, 1105-1111 (2022), DOI: 10.1080/09720529.2022.2072437.
[19] Vijayarani, S., and R. Janani. “Text mining: open source tokenization tools-an analysis.” Advanced Computational Intelligence: An International Journal (ACII) 3.1 : 37-47 (2016).
[20] Sharma, Sandeep Kumar, Kumar, Anil, Ashtagi, Rashmi & Jain, Rekha. OCA: An intelligent model for improving security breach of biometric based authentication systems, Journal of Discrete Mathematical Sciences and Cryptography, 26:5, 1415–1425 (2023), DOI: 10.47974/JDMSC-1765.
[21] Liu, Huan, and Rudy Setiono. “Chi2: Feature selection and discretization of numeric attributes.” Proceedings of 7th IEEE international conference on tools with artificial intelligence. Ieee (1995).
[22] Mahesh, Batta. “Machine learning algorithms-a review.” International Journal of Science and Research (IJSR).[Internet] 9.1 : 381-386 (2020).
[23] Dasgupta, Dipankar, Zahid Akhtar, and Sajib Sen. “Machine learning in cybersecurity: a comprehensive survey.” The Journal of Defense Modeling and Simulation 19.1 : 57-106 (2022).
[24] Hannousse, Abdelhakim, and Salima Yahiouche. “Towards benchmark datasets for machine learning based website phishing detection: An experimental study.” Engineering Applications of Artificial Intelligence 104 : 104347 (2021).
[25] Nick, Todd G., and Kathleen M. Campbell. “Logistic regression.” Topics in biostatistics : 273-301 (2007).
[26] Guo, Gongde, et al. “KNN model-based approach in classification.” On The Move to Meaningful Internet Systems 2003: CoopIS, DOA, and ODBASE: OTM Confederated International Conferences, CoopIS, DOA, and ODBASE 2003, Catania, Sicily, Italy, November 3-7 (2003). Proceedings. Springer Berlin Heidelberg, 2003.
[27] Suthaharan, Shan, and Shan Suthaharan. “Support vector machine.” Machine learning models and algorithms for big data classification: thinking with examples for effective learning : 207-235 (2016).
[28] Kecman, Vojislav. “Support vector machines–an introduction.” Support vector machines: theory and applications. Berlin, Heidelberg: Springer Berlin Heidelberg, 1-47 (2005).
[29] Yu, Hwanjo, and Sungchul Kim. “SVM Tutorial-Classification, Regression and Ranking.” Handbook of Natural computing 1 : 479-506 (2012).
[30] Qi, Yanjun. “Random forest for bioinformatics.” Ensemble machine learning: Methods and applications : 307-323 (2012).
[31] Natekin, Alexey, and Alois Knoll. “Gradient boosting machines, a tutorial.” Frontiers in Neurorobotics 7 : 21 (2013).
[32] Prokhorenkova, Liudmila, et al. “CatBoost: unbiased boosting with categorical features.” Advances in neural information processing systems 31 (2018).
[33] Chen, Tianqi, and Carlos Guestrin. “Xgboost: A scalable tree boosting system.” Proceedings of the 22nd acm sigkdd international conference on knowledge discovery and data mining (2016).
[34] Popescu, Marius-Constantin, et al. “Multilayer perceptron and neural networks.” WSEAS Transactions on Circuits and Systems 8.7 : 579-588 (2009).
[35] Li, Hao, et al. “Rethinking the hyperparameters for fine-tuning.” arXiv preprint arXiv:2002.11770 (2020).

 

Views: 478Downloads: 63Citations: 2