针对中国反钓鱼网站联盟(APAC)的钓鱼举报数据进行分析后,提出了一种利用DNS日志和钓鱼历史数据主动发现钓鱼网页的方法,并开发部署了相关的检测系统每日自动检测和举报活跃的钓鱼网页,其采用的主动发现钓鱼攻击的机制对传统的被动防御的反钓鱼技术是一种良好的提升和补充。该系统目前已经成为中国反钓鱼联盟最主要的钓鱼举报来源之一。
This paper analyzed APAC' s phishing reports and proposed a method using DNS flows and historical phishing data to find phishing URLs actively. It developed and deployed a related phishing detection system to discover and report phishing URLs in an active way, which could be important improvement compared to existing anti-phishing technology. The system has already become one of the biggest phishing reporting sources in APAC.