Open Access Open Access  Restricted Access Subscription or Fee Access

A New Architecture and Solution for Web Bulletin Board Security from Spamming Attack

Fouzia Sultana, Dr. Stephen Charles, Dr. A. Govardhan

Abstract


Spamming is one of the most prominent challenges over the web. It is an event of flooding various website with a sort of data that people would not have otherwise received. Generally spamming is performed in two major ways: Using Automated programs and using Human Spammers. A forum spamming is an issue where either automated programs or human belonging to a spamming society registers itself with various Forums (Web Bulletin Board) and post the same message. This is primarily done for two main purposes: To create back link of a website from numerous websites to increase the search engine ranking of the website and to advertise certain products whose advertisements are refused to be accepted by web audience. In this paper we analyze various security threats and their preventive measures with implication on server and the Bulletin Board itself with the help of real time data from grasshoppernetwork.com which is a forum running on mybb Bulletin Board. We analyze various threat models and propose a comprehensive model to protect the forum from Spammers. A Php based Modification is developed as anti-spamming measure and integrated with the existing website. Result data shows significant improvement in preventing spam with our algorithm.

Keywords


Spamming, Web Security, Forum, Back Link, Bulletin Boards, Signature, Captcha, E-Mail.

Full Text:

PDF

References


Lixin Tao, Li-Chiou Chen, Chienting Lin, “Work in progress-Improving web security education with virtual labs and shared course modules”, Frontiers in Education Conference (FIE), IEEE, 2010.

Curphey, M., Arawo, R., “Web application security assessment tools, Security & Privacy”, IEEE, Volume 4, Issue 4, 2006.

Hui-zhong Shi, Bo Chen, Ling Yu, “Analysis of Web Security Comprehensive Evaluation Tools”, Networks Security Wireless Communications and Trusted Computing (NSWCTC), 2010 Second International Conference Volume 1, 2010.

Sheng-Kang Lin, “From Web server security to Web components security”, IEEE 37th Annual 2003 International Carnahan Conference on Security Technology, 2003. Proceedings. Digital Object Identifier: 10.1109/CCST.2003.1297556 Publication Year: 2003 , Page(s): 176 - 182

Akhawe D., Barth A., Lam P.E., Mitchell, J., Song D., “Towards a Formal Foundation of Web Security”, Digital Object Identifier: 10.1109/CSF.2010.27 Publication Year: 2010, Page(s): 290 – 304.

Thomas, K., Grier, C., Ma J., Paxson V., Song D., “Design and Evaluation of a Real-Time URL Spam Filtering Service”, Security and Privacy (SP), 2011 IEEE Symposium on Digital Object Identifier: 10.1109/SP.2011.25, Page(s): 447 – 462, 2011.

Yih-Jiun Lee, Kai-Wen Lien, “Location Based Enabled Context Awareness Information Service”, New Trends in Information and Service Science, 2009. NISS '09. International Conference on Digital Object Identifier: 10.1109/NISS.2009.160 Page(s): 944 – 947, 2009.

Sion, R., Atallah M., Prabhakar S., “On-the-fly intrusion detection for Web portals, Information Technology: Coding and Computing”, ITCC 2003. International Conference on Digital Object Identifier: 10.1109/ITCC.2003.1197549, Page(s): 325 – 330, 2003.

Harrald J.R., Hekimian C., Shrestha S., “Framework for pinpointing the point of compromise of e-mail addresses”, Engineering Management Conference, Proceedings. 2004 IEEE International Volume: 2, 2004.

Ayla E.S., Ozgit A., “An architecture for end-to-end and inter-domain trusted mail delivery service”, Computer Networks, 2006 International Symposium on Digital Object Identifier: 10.1109/ISCN.2006.1662537, Page(s): 220 – 225, 2006.

Ni Zhang, Yu Jiang, Binxing Fang, Xueqi Cheng, Li Guo, “Traffic classification-based spam filter”, Volume: 5 Digital Object Identifier: 10.1109/ICC.2006.255085, Page(s): 2130 – 2135, 2006.

Abu-Nimeh S., Chen T., “Proliferation and Detection of Blog Spam, Security & Privacy”, Volume: 8, Issue: 5, pp. 42-47, IEEE, 2010.

Joonmo Hong, Boo Joong Kang, Eul Gyu Im, “Adaptable anti-spam technique for the internet web BBS”, International Conference on Network Infrastructure and Digital Content, 2009.

Algur, S.P., Patil A.P., Hiremath P.S., Shivashankar S., “Conceptual level similarity measure based review spam detection”, International Conference on Signal and Image Processing (ICSIP), pp. 416-423, 2010.

mybb.com

www.grasshoppernetwork.com


Refbacks

  • There are currently no refbacks.


Creative Commons License
This work is licensed under a Creative Commons Attribution 3.0 License.