A Study of Prevention Model the Spread of Phishing Attack for Protection the Medical Information

의료정보 보호를 위한 피싱공격 확산방지모델 연구

  • Received : 2012.04.03
  • Accepted : 2013.03.20
  • Published : 2013.03.31


Phishing attacks have been implemented in smarter, more advanced ways with the passage of time. Hackers use intelligent phishing attacks to take over computers and to penetrate internal networks in major organizations. So, in this paper, a model for a prevention of phishing attack spread is conceptual designed in order to protect internal users and sensitive or important information from sophisticated phishing attacks. Internal users simultaneously utilize both external web and organizational mail services. And hackers can take the both side equally as a vector. Thus, packets in each service must be monitored and stored to recognize threatening elements from both sides. The model designed in this paper extends the mail server based security structure used in conventional studies for the protection of Internet mail services accessed by intranet users. This model can build a list of phishing sites as the system checks e-mails compared to that of the method that directly intercepts accesses to phishing sites using a proxy server, so it represents no standby time for request and response processes.


Medical Information Security;Phishing Attack;Prevention Leakage;Security Management


Supported by : 한국연구재단