Cổng tri thức PTIT

Bài báo quốc tế

Kho tri thức

/

/

UEP-IQ: A Deployable Multi-Modal Phishing Detection Framework

UEP-IQ: A Deployable Multi-Modal Phishing Detection Framework

Huỳnh Trọng Thưa

Phishing attacks increasingly span multiple surfaces (URLs, spoofed emails, malicious PDFs, and image/QR-based lures), making single-modality detectors brittle in real deployments. We propose UEP-IQ, a unified multi-modal phishing detection framework that combines (i) lightweight Random Forest (RF) classifiers for structured artifacts (URL lexical/structural features, email header anomalies, and PDF metadata descriptors) with (ii) a vision module using EfficientNet-B0 as a frozen backbone and an RF head for phishing screenshots and QR-code misuse. We curate and harmonize heterogeneous public data sources into a consolidated benchmark covering four major phishing vectors, and design modality-specific preprocessing pipelines including a QR to URL linkage to exploit cross-modal signals. Across held-out test sets, UEP-IQ achieves strong per-modality performance (e.g., 93% accuracy for URLs, 99% for email headers and PDFs, and 85–88% for images/QR), outperforming common classical baselines and offering a favorable accuracy–latency trade-off compared to heavier end-to-end models. We further analyze the aggregation layer via fusion sensitivity and provide a learned fusion alternative to justify decision combining beyond heuristics. Finally, we validate deployability through a web application and browser extension, achieving sub-200 ms end-to-end latency on a CPU backend. These results indicate that a production-oriented hybrid architecture can provide scalable, accurate, and practical defense against contemporary multi-surface phishing campaigns.

Xuất bản trên:

UEP-IQ: A Deployable Multi-Modal Phishing Detection Framework


Nhà xuất bản:

Địa điểm:


Từ khoá:

Phishing, Multi-modal detection, Random Forest, Convolutional Neural Networks, URL security, Email security, PDF malware, QR phishing