Abstract: Pharming is an advance phishing attack. It is also known as "phishing without a lure". A hacker's
attempt to change/exploit the DNS settings of a server so that when you enter the address of a legitimate
website, it redirects you to a fake/copy of the original site hosted somewhere else. It is a classy edition of
phishing attacks – endeavor to take users' identification like username and password by redirecting them to a
fake website using DNS-based techniques.
Keywords: Pharming, advance phishing, prevention against Pharming attack, detecting Pharming attack
[1] S. Stamm, Z. Ramzan, et Jakobsson Markus, Drive-By Pharming, Proceedings of the 9th international conference on Information
and communications security, Zhengzhou, China: ACM, 2007, p. 495-506.
[2] G.Ollman,Jul.2005,The Pharming Guide[online]; Avalibale: http:// www. Ngssoftware. com / papers/ ThePharmingGuide.pdf.
[3] Microsoft Corporation, 2013, Domain Name System [online] ; Available :http://technet.microsoft.com/enus/
network/bb629410.aspx
[4] C. Jackson, A. Barth, A. Botz, W. Shao, et D. Boneh, Protecting browsers from DNS rebinding attacks, ACM, vol. 3, Issue 1,
Jan.2009.
[5] C. Karlof, U. Shankar, J. Tygar, et D. Wagner, Dynamic pharming attacks and locked same-origin policies for web browsers,
Proceedings of the 14th ACM conference on Computer and communications security, Alexandria, Viriginia, USA: ACM, 2007, p.
58-71.
[6] Y. Cao, W. Han, et Y. Le, Anti-phishing Based on Automated Individual White-List, Proceedings of the 4th ACM workshop on
Digital identity management, Alexandria, Viriginia, USA: ACM, 2008, p. 51-60.
[7] A.P.E. Rosiello, E. Kirda, C. Kruegel, et F. Ferrandi, A layoutsimilarity- based approach for detecting phishing pages, Nice, France:
IEEE, 2007, p. 454-463.
[8] Gastellier-Prevost, S.; Granadillo, G.G.; Laurent, M., A dual approach to detect pharming attacks at the client-side, IEEE 2011, p.1-
5.
[9] Chih Sheng Chen, Shr-An-Su,Yi-Chan Hung,Jun. 7,2011, Protecting computer users from online fraud, US patent number
US7,85,555 B1
[10] Chao-Yu Chen,Tse-Min Chen,Aug.14,2012,Autonomous system based Phishing and Pharming Detection,US patent number US
8,245,304 B1