ARCHIVES

Original Article

Cross-Browser Real-Time Phishing Website Detection Framework Using Behavioral Analysis and Machine Learning

Abinaya S1 Gokulnath K2 Mohamed Irfan3 Manikandan M4 A. Raja5
1 2 3 4 B.E. Computer Science and Engineering (Cyber Security), United Institute of Technology, Coimbatore, Tamil Nadu, India. 5 Head of the Department, Department of Computer Science and Engineering (Cyber Security), United Institute of Technology, Coimbatore, Tamil Nadu, India.

Published Online: May-August 2026

Pages: 104-111

Abstract

Phishing attacks represent one of the most pervasive cybersecurity threats targeting internet users worldwide. Adversaries craft deceptive websites that closely imitate legitimate online services to harvest sensitive credentials, financial data, and personal information. Conventional blacklist-based browser defences are inherently reactive and fail to protect users against newly generated phishing domains and zero-day attacks not yet catalogued in threat intelligence repositories. This paper proposes a cross-browser real-time phishing detection framework implemented as a lightweight browser extension integrated with a FastAPI-based backend detection engine and a supervised machine learning pipeline. The proposed system extracts seven runtime behavioural indicators from active webpages—SSL certificate validity, login form presence, redirect chain length, suspicious keyword patterns, domain age, external script count, and URL Shannon entropy—and maps them to a 31-dimensional feature vector aligned with the UCI Phishing Website Dataset for inference by a trained RandomForest classifier. A hybrid scoring mechanism combines probabilistic ML output with a deterministic heuristic engine using: Final Score = 0.6 × ML Score + 0.4 × Rule Score, generating an interpretable 0–100 risk index with factor-level explanations. Experimental evaluation on 11,055 labelled samples yields 96.29% accuracy, 95.99% precision, 97.40% recall, and 96.69% F1-score, confirming the effectiveness of the proposed hybrid detection strategy. The framework is fully compatible with Chrome, Edge, Firefox, Brave, and Opera through the WebExtension API and Manifest V3 architecture, providing real-time alerts, overlay warnings, and a graphical risk dashboard.

Related Articles

2026

Artificial Intelligence in Learning and Teaching

2026

Admin Assist: An AI – Driven Configuration and Orchestration for Enterprise Application

2026

Enhancing Blood Group Identification using pigeon inspired optimization: An Innovative Approach

2026

Eco-Genius: Power Up Smart, Power Down Waste

2026

Crowd-Sourced Disaster Response and Rescue Assistant

2026

Unveiling Deepfake Detection Using Vision Transformers: A Survey and Experimental Study

Share Article

X
LinkedIn
Facebook
WhatsApp

Or copy link

https://test.indjcst.com/archives/10.59256/indjcst.20260502010

*Instagram doesn't support direct link sharing from web. Copy the link and share it in your Instagram story or post.