AdaPhish: An AI-Powered Adaptive Defense Against Phishing Attacks

Thursday 20 March 2025


Phishing attacks have become a significant threat in the digital age, and organizations are struggling to find effective methods to tackle these attacks without compromising sensitive information. Phish bowls, collaborative platforms where users can submit known phishes, have been a vital part of cybersecurity efforts against phishing attacks. However, traditional phish bowls require manual anonymization and are often limited to internal use.


To overcome these limitations, researchers have developed AdaPhish, an AI-powered adaptive defense and education resource that uses large language models (LLMs) and vector databases to detect phishing emails in real-time. This platform offers a scalable and collaborative solution for phishing detection and cybersecurity education.


AdaPhish works by embedding emails as vectors, allowing it to provide instant adaptability and efficient searchability across a growing database of phishing emails. Unlike static heuristic or LSTM-based systems, AdaPhish’s lazy learning system instantly incorporates new phishing data with minimal computational load, improving adaptability and detection speed.


One of the key features of AdaPhish is its ability to automatically anonymize sensitive information in submitted emails, making it a more efficient and secure platform for both internal and external teams. The platform also employs two AI models to enhance detection accuracy: a phish bowl-based analyzer that recognizes patterns in known phishing emails, and a GPT-based analyzer that uses natural language processing to identify suspicious language.


The researchers behind AdaPhish have tested the platform using a large dataset of emails from various sources, including the Enron, SpamAssassin, and CEAS-08 datasets. The results show that AdaPhish achieves high accuracy and precision rates, even in cases where phishing patterns are subtle or hard to detect.


AdaPhish also includes a trend analyzer that tracks repeated phishing patterns over time, issuing alerts if similar phishes appear frequently. This feature helps security teams identify emerging threats and take proactive measures to prevent attacks.


While AdaPhish is an impressive advancement in phishing detection, the researchers acknowledge some limitations. The platform’s centralized design makes it vulnerable to single-point failures and insider threats. However, they propose using secure multi-party computation (SMPC) and blockchain technology to decentralize the platform and enhance security.


In addition, fine-tuning LLMs for phishing tasks could further improve embedding accuracy and detection precision. By leveraging these advancements, AdaPhish has the potential to become a powerful tool in the fight against phishing attacks, providing organizations with a scalable and adaptive solution for detecting and preventing these threats.


Cite this article: “AdaPhish: An AI-Powered Adaptive Defense Against Phishing Attacks”, The Science Archive, 2025.


Ai-Powered, Phishing Detection, Adaptive Defense, Collaborative Platform, Email Analysis, Natural Language Processing, Gpt-Based Analyzer, Phish Bowl, Phishing Attacks, Cybersecurity Education, Secure Multi-Party Computation


Reference: Rei Meguro, Ng S. T. Chong, “AdaPhish: AI-Powered Adaptive Defense and Education Resource Against Deceptive Emails” (2025).


Leave a Reply