{"id":"https://openalex.org/W4390002552","doi":"https://doi.org/10.1145/3638253","title":"Multi-SpacePhish: Extending the Evasion-space of Adversarial Attacks against Phishing Website Detectors Using Machine Learning","display_name":"Multi-SpacePhish: Extending the Evasion-space of Adversarial Attacks against Phishing Website Detectors Using Machine Learning","publication_year":2023,"publication_date":"2023-12-20","ids":{"openalex":"https://openalex.org/W4390002552","doi":"https://doi.org/10.1145/3638253"},"language":"en","primary_location":{"id":"doi:10.1145/3638253","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3638253","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3638253","source":{"id":"https://openalex.org/S4210235901","display_name":"Digital Threats Research and Practice","issn_l":"2576-5337","issn":["2576-5337","2692-1626"],"is_oa":true,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Digital Threats: Research and Practice","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"diamond","oa_url":"https://dl.acm.org/doi/pdf/10.1145/3638253","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100451635","display_name":"Ying Yuan","orcid":"https://orcid.org/0000-0001-9530-4725"},"institutions":[{"id":"https://openalex.org/I138689650","display_name":"University of Padua","ror":"https://ror.org/00240q980","country_code":"IT","type":"education","lineage":["https://openalex.org/I138689650"]}],"countries":["IT"],"is_corresponding":true,"raw_author_name":"Ying Yuan","raw_affiliation_strings":["University of Padua, Padova, Italy","Department of Mathematics University of Padua, Italy"],"raw_orcid":"https://orcid.org/0000-0001-9530-4725","affiliations":[{"raw_affiliation_string":"University of Padua, Padova, Italy","institution_ids":["https://openalex.org/I138689650"]},{"raw_affiliation_string":"Department of Mathematics University of Padua, Italy","institution_ids":["https://openalex.org/I138689650"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5084036967","display_name":"Giovanni Apruzzese","orcid":"https://orcid.org/0000-0002-6890-9611"},"institutions":[{"id":"https://openalex.org/I184656255","display_name":"University of Liechtenstein","ror":"https://ror.org/01qjrx392","country_code":"LI","type":"education","lineage":["https://openalex.org/I184656255"]}],"countries":["LI"],"is_corresponding":false,"raw_author_name":"Giovanni Apruzzese","raw_affiliation_strings":["University of Liechtenstein, Vaduz, Liechtenstein","School of Business Informatics University of Liechtenstein, Liechtenstein"],"raw_orcid":"https://orcid.org/0000-0002-6890-9611","affiliations":[{"raw_affiliation_string":"University of Liechtenstein, Vaduz, Liechtenstein","institution_ids":["https://openalex.org/I184656255"]},{"raw_affiliation_string":"School of Business Informatics University of Liechtenstein, Liechtenstein","institution_ids":["https://openalex.org/I184656255"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5063847107","display_name":"Mauro Conti","orcid":"https://orcid.org/0000-0002-3612-1934"},"institutions":[{"id":"https://openalex.org/I138689650","display_name":"University of Padua","ror":"https://ror.org/00240q980","country_code":"IT","type":"education","lineage":["https://openalex.org/I138689650"]},{"id":"https://openalex.org/I98358874","display_name":"Delft University of Technology","ror":"https://ror.org/02e2c7k09","country_code":"NL","type":"education","lineage":["https://openalex.org/I98358874"]}],"countries":["IT","NL"],"is_corresponding":false,"raw_author_name":"Mauro Conti","raw_affiliation_strings":["University of Padua, Padova, Italy and Delft University of Technology, Delft, Netherlands","Department of Mathematics University of Padua, Italy and Department of Computer Science Delft University of Technology, Netherlands"],"raw_orcid":"https://orcid.org/0000-0002-3612-1934","affiliations":[{"raw_affiliation_string":"University of Padua, Padova, Italy and Delft University of Technology, Delft, Netherlands","institution_ids":["https://openalex.org/I98358874","https://openalex.org/I138689650"]},{"raw_affiliation_string":"Department of Mathematics University of Padua, Italy and Department of Computer Science Delft University of Technology, Netherlands","institution_ids":["https://openalex.org/I98358874","https://openalex.org/I138689650"]}]}],"institutions":[],"countries_distinct_count":3,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5100451635"],"corresponding_institution_ids":["https://openalex.org/I138689650"],"apc_list":null,"apc_paid":null,"fwci":1.3254,"has_fulltext":true,"cited_by_count":8,"citation_normalized_percentile":{"value":0.84984531,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":97,"max":98},"biblio":{"volume":"5","issue":"2","first_page":"1","last_page":"51"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9959999918937683,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9625999927520752,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.8909648656845093},{"id":"https://openalex.org/keywords/evasion","display_name":"Evasion (ethics)","score":0.8814855813980103},{"id":"https://openalex.org/keywords/phishing","display_name":"Phishing","score":0.6829881072044373},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6634123921394348},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6458954811096191},{"id":"https://openalex.org/keywords/confusion","display_name":"Confusion","score":0.5680882334709167},{"id":"https://openalex.org/keywords/feature-vector","display_name":"Feature vector","score":0.4918334484100342},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4353737235069275},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.40008699893951416},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.10488677024841309},{"id":"https://openalex.org/keywords/the-internet","display_name":"The Internet","score":0.09274569153785706},{"id":"https://openalex.org/keywords/psychology","display_name":"Psychology","score":0.08022305369377136}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.8909648656845093},{"id":"https://openalex.org/C2781251061","wikidata":"https://www.wikidata.org/wiki/Q5416089","display_name":"Evasion (ethics)","level":3,"score":0.8814855813980103},{"id":"https://openalex.org/C83860907","wikidata":"https://www.wikidata.org/wiki/Q135005","display_name":"Phishing","level":3,"score":0.6829881072044373},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6634123921394348},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6458954811096191},{"id":"https://openalex.org/C2781140086","wikidata":"https://www.wikidata.org/wiki/Q557945","display_name":"Confusion","level":2,"score":0.5680882334709167},{"id":"https://openalex.org/C83665646","wikidata":"https://www.wikidata.org/wiki/Q42139305","display_name":"Feature vector","level":2,"score":0.4918334484100342},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4353737235069275},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.40008699893951416},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.10488677024841309},{"id":"https://openalex.org/C110875604","wikidata":"https://www.wikidata.org/wiki/Q75","display_name":"The Internet","level":2,"score":0.09274569153785706},{"id":"https://openalex.org/C15744967","wikidata":"https://www.wikidata.org/wiki/Q9418","display_name":"Psychology","level":0,"score":0.08022305369377136},{"id":"https://openalex.org/C8891405","wikidata":"https://www.wikidata.org/wiki/Q1059","display_name":"Immune system","level":2,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0},{"id":"https://openalex.org/C203014093","wikidata":"https://www.wikidata.org/wiki/Q101929","display_name":"Immunology","level":1,"score":0.0},{"id":"https://openalex.org/C11171543","wikidata":"https://www.wikidata.org/wiki/Q41630","display_name":"Psychoanalysis","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.1145/3638253","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3638253","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3638253","source":{"id":"https://openalex.org/S4210235901","display_name":"Digital Threats Research and Practice","issn_l":"2576-5337","issn":["2576-5337","2692-1626"],"is_oa":true,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Digital Threats: Research and Practice","raw_type":"journal-article"},{"id":"pmh:oai:www.research.unipd.it:11577/3502772","is_oa":true,"landing_page_url":"https://hdl.handle.net/11577/3502772","pdf_url":"https://www.research.unipd.it/bitstream/11577/3502772/2/3638253.pdf","source":{"id":"https://openalex.org/S4377196283","display_name":"Research Padua  Archive (University of Padua)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I138689650","host_organization_name":"University of Padua","host_organization_lineage":["https://openalex.org/I138689650"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"info:eu-repo/semantics/article"},{"id":"pmh:oai:iris.uniroma1.it:11573/1750888","is_oa":false,"landing_page_url":"https://hdl.handle.net/11573/1750888","pdf_url":null,"source":{"id":"https://openalex.org/S4377196107","display_name":"IRIS Research product catalog (Sapienza University of Rome)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"info:eu-repo/semantics/article"}],"best_oa_location":{"id":"doi:10.1145/3638253","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3638253","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3638253","source":{"id":"https://openalex.org/S4210235901","display_name":"Digital Threats Research and Practice","issn_l":"2576-5337","issn":["2576-5337","2692-1626"],"is_oa":true,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Digital Threats: Research and Practice","raw_type":"journal-article"},"sustainable_development_goals":[{"score":0.4099999964237213,"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions"}],"awards":[{"id":"https://openalex.org/G3293115889","display_name":null,"funder_award_id":"101070303","funder_id":"https://openalex.org/F4320334322","funder_display_name":"HORIZON EUROPE Framework Programme"},{"id":"https://openalex.org/G507880695","display_name":null,"funder_award_id":"PE00000014","funder_id":"https://openalex.org/F4320320300","funder_display_name":"European Commission"},{"id":"https://openalex.org/G5242316204","display_name":null,"funder_award_id":"101070303","funder_id":"https://openalex.org/F4320320300","funder_display_name":"European Commission"}],"funders":[{"id":"https://openalex.org/F4320320300","display_name":"European Commission","ror":"https://ror.org/00k4n6c32"},{"id":"https://openalex.org/F4320334322","display_name":"HORIZON EUROPE Framework Programme","ror":null}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4390002552.pdf","grobid_xml":"https://content.openalex.org/works/W4390002552.grobid-xml"},"referenced_works_count":34,"referenced_works":["https://openalex.org/W1119465278","https://openalex.org/W1901616594","https://openalex.org/W2029470356","https://openalex.org/W2037021247","https://openalex.org/W2037374011","https://openalex.org/W2052176706","https://openalex.org/W2158894011","https://openalex.org/W2232321456","https://openalex.org/W2418966180","https://openalex.org/W2779627157","https://openalex.org/W2800391419","https://openalex.org/W2904742004","https://openalex.org/W2919115771","https://openalex.org/W2963777745","https://openalex.org/W3007514548","https://openalex.org/W3023514002","https://openalex.org/W3092891978","https://openalex.org/W3094291258","https://openalex.org/W3101969156","https://openalex.org/W3103557498","https://openalex.org/W3112205328","https://openalex.org/W3112288684","https://openalex.org/W3158143049","https://openalex.org/W3168146198","https://openalex.org/W3168587836","https://openalex.org/W3173117104","https://openalex.org/W3174930054","https://openalex.org/W3176065393","https://openalex.org/W3195446130","https://openalex.org/W4283313119","https://openalex.org/W4382001444","https://openalex.org/W6627305818","https://openalex.org/W6785841629","https://openalex.org/W6786032476"],"related_works":["https://openalex.org/W2149202530","https://openalex.org/W2807822918","https://openalex.org/W2921723332","https://openalex.org/W2482950156","https://openalex.org/W2305322260","https://openalex.org/W3139248031","https://openalex.org/W3042334625","https://openalex.org/W4200017362","https://openalex.org/W2502115930","https://openalex.org/W4388020458"],"abstract_inverted_index":{"Existing":[0],"literature":[1],"on":[2,9],"adversarial":[3,39,70,107,298],"Machine":[4],"Learning":[5],"(ML)":[6],"focuses":[7],"either":[8],"showing":[10],"attacks":[11,133,224,299],"that":[12,19,116,136,175,267],"break":[13],"every":[14],"ML":[15,78,94,301],"model":[16,130],"or":[17,35],"defenses":[18],"withstand":[20],"most":[21,222],"attacks.":[22,164],"Unfortunately,":[23],"little":[24],"consideration":[25],"is":[26],"given":[27],"to":[28,63,73,82,112,139,179,220,242,286],"the":[29,33,36,45,48,56,65,91,102,120,153,169,183,240,247,259,272,281,291],"actual":[30,66],"feasibility":[31],"of":[32,51,76,93,158,172,185,234,297],"attack":[34],"defense.":[37],"Moreover,":[38],"samples":[40],"are":[41,122,137,176,218,239],"often":[42],"crafted":[43,187],"in":[44,86,104,119,188,255,271,280],"\u201cfeature-space,\u201d":[46],"making":[47],"corresponding":[49],"evaluations":[50],"questionable":[52],"value.":[53],"Simply":[54],"put,":[55],"current":[57],"situation":[58],"does":[59],"not":[60],"allow":[61],"one":[62],"estimate":[64],"threat":[67,129],"posed":[68],"by":[69],"attacks,":[71],"leading":[72],"a":[74,127,196,211,278,294],"lack":[75],"secure":[77],"systems.":[79],"We":[80],"aim":[81],"clarify":[83],"such":[84],"confusion":[85],"this":[87,235],"article.":[88],"By":[89],"considering":[90],"application":[92],"for":[95,146,293,303],"Phishing":[96],"Website":[97],"Detection":[98],"(PWD),":[99],"we":[100,125,151,238],"formalize":[101],"\u201cevasion-space,\u201d":[103],"which":[105],"an":[106,114,231,251],"perturbation":[108],"can":[109,276],"be":[110],"introduced":[111],"fool":[113],"ML-PWD\u2014demonstrating":[115],"even":[117],"perturbations":[118,186,254,270],"\u201cfeature-space\u201d":[121],"useful.":[123],"Then,":[124],"propose":[126,243],"realistic":[128,192,223],"describing":[131],"evasion":[132,163,173,193],"against":[134,161,300],"ML-PWD":[135,160,217],"cheap":[138,207],"stage,":[140],"and":[141,181,205,244,274],"hence":[142],"intrinsically":[143],"more":[144,177],"attractive":[145],"real":[147],"phishers.":[148],"After":[149],"that,":[150],"perform":[152],"first":[154,241],"statistically":[155,197],"validated":[156],"assessment":[157],"state-of-the-art":[159],"12":[162],"Our":[165,288],"evaluation":[166],"shows":[167],"(i)":[168],"true":[170],"efficacy":[171],"attempts":[174,194],"likely":[178],"occur;":[180],"(ii)":[182],"impact":[184],"different":[189],"evasion-spaces;":[190],"our":[191,221],"induce":[195],"significant":[198],"degradation":[199],"(3\u201310%":[200],"at":[201,258],"p":[202,226],"&lt;":[203],"0.05),":[204],"their":[206],"cost":[208],"makes":[209],"them":[210],"subtle":[212],"threat.":[213],"Notably,":[214],"however,":[215],"some":[216],"immune":[219],"(":[225],"=":[227],"0.22).":[228],"Finally,":[229],"as":[230],"additional":[232],"contribution":[233,289],"journal":[236],"publication,":[237],"empirically":[245],"evaluate":[246],"intriguing":[248],"case":[249],"wherein":[250],"attacker":[252],"introduces":[253],"multiple":[256],"evasion-spaces":[257],"same":[260],"time":[261],".":[262],"These":[263],"new":[264],"results":[265],"show":[266],"simultaneously":[268],"applying":[269],"problem-":[273],"feature-space":[275],"cause":[277],"drop":[279],"detection":[282],"rate":[283],"from":[284],"0.95":[285],"0.":[287],"paves":[290],"way":[292],"much-needed":[295],"re-assessment":[296],"systems":[302],"cybersecurity.":[304]},"counts_by_year":[{"year":2025,"cited_by_count":4},{"year":2024,"cited_by_count":4}],"updated_date":"2026-05-21T06:26:12.895304","created_date":"2025-10-10T00:00:00"}
