CPC H04L 63/1483 (2013.01) [H04L 51/18 (2013.01); H04L 67/55 (2022.05); H04W 4/12 (2013.01)] | 20 Claims |
1. A method of phishing remediation, the method comprising:
receiving, by a phishing mitigation server, an e-mail address for an online e-mail service;
accessing, by the phishing mitigation server, a mailbox, at least in part based on the e-mail address, to receive an email;
downloading, by the phishing mitigation server, a copy of the email without marking the email as read or opened;
requesting, from a uniform resource locator (URL) reputation service, a reputation for a URL associated with the email;
scanning an attachment to the email for phishing or malware features;
analyzing the email for phishing features;
assigning, by the phishing mitigation server, the email an overall phishing score based on the analyzing, the scanning, and the reputation for the URL; and
flagging the email with a warning, at least in part based on the overall phishing score.
|