FIELD: information technology.
SUBSTANCE: method for detecting a phishing web page includes the following steps: uploading a phishing web page to the server; identifying at least one unique characteristic identifying the downloaded web page as phishing; creating at least one phishing detection rule using at least one unique characteristic identifying the downloaded web page as phishing; forming the binding of additional data including the identification of the purpose of phishing to at least one phishing detection rule; saving at least one phishing detection rule along with the binding additional data identifying the purpose of phishing in the data store; downloading to the server at least one web page to validate for phishing; downloading at least one rule from the data store; validating the characteristics of phishing in the downloaded web page code with at least one downloaded phishing detection rule; and identifying the downloaded web page as a phishing web page, in case of detection of phishing characteristics in the code of the downloaded web page.
EFFECT: detection of phishing web pages by creating discovery rules of the phishing web pages using at least one unique characteristic that identifies the web page as phishing.
15 cl, 7 dwg
Authors
Dates
2017-12-04—Published
2016-12-29—Filed