Eliciting Least-to-Most Reasoning for Phishing URL Detection

Fuente: arXiv
Salvato in:
Dettagli Bibliografici
Autori principali: Trikilis, Holly, Marasinghe, Pasindu, Rashid, Fariza, Seneviratne, Suranga
Natura: Preprint
Pubblicazione: 2026
Soggetti:
Accesso online:
Tags: Aggiungi Tag
Nessun Tag, puoi essere il primo ad aggiungerne!!
_version_ 1866910003217039360
author Trikilis, Holly
Marasinghe, Pasindu
Rashid, Fariza
Seneviratne, Suranga
author_facet Trikilis, Holly
Marasinghe, Pasindu
Rashid, Fariza
Seneviratne, Suranga
contents Phishing continues to be one of the most prevalent attack vectors, making accurate classification of phishing URLs essential. Recently, large language models (LLMs) have demonstrated promising results in phishing URL detection. However, their reasoning capabilities that enabled such performance remain underexplored. To this end, in this paper, we propose a Least-to-Most prompting framework for phishing URL detection. In particular, we introduce an "answer sensitivity" mechanism that guides Least-to-Most's iterative approach to enhance reasoning and yield higher prediction accuracy. We evaluate our framework using three URL datasets and four state-of-the-art LLMs, comparing against a one-shot approach and a supervised model. We demonstrate that our framework outperforms the one-shot baseline while achieving performance comparable to that of the supervised model, despite requiring significantly less training data. Furthermore, our in-depth analysis highlights how the iterative reasoning enabled by Least-to-Most, and reinforced by our answer sensitivity mechanism, drives these performance gains. Overall, we show that this simple yet powerful prompting strategy consistently outperforms both one-shot and supervised approaches, despite requiring minimal training or few-shot guidance. Our experimental setup can be found in our Github repository github.sydney.edu.au/htri0928/least-to-most-phishing-detection.
format Preprint
id arxiv_https___arxiv_org_abs_2601_20270
institution arXiv
publishDate 2026
record_format arxiv
spellingShingle Eliciting Least-to-Most Reasoning for Phishing URL Detection
Trikilis, Holly
Marasinghe, Pasindu
Rashid, Fariza
Seneviratne, Suranga
Cryptography and Security
Artificial Intelligence
Phishing continues to be one of the most prevalent attack vectors, making accurate classification of phishing URLs essential. Recently, large language models (LLMs) have demonstrated promising results in phishing URL detection. However, their reasoning capabilities that enabled such performance remain underexplored. To this end, in this paper, we propose a Least-to-Most prompting framework for phishing URL detection. In particular, we introduce an "answer sensitivity" mechanism that guides Least-to-Most's iterative approach to enhance reasoning and yield higher prediction accuracy. We evaluate our framework using three URL datasets and four state-of-the-art LLMs, comparing against a one-shot approach and a supervised model. We demonstrate that our framework outperforms the one-shot baseline while achieving performance comparable to that of the supervised model, despite requiring significantly less training data. Furthermore, our in-depth analysis highlights how the iterative reasoning enabled by Least-to-Most, and reinforced by our answer sensitivity mechanism, drives these performance gains. Overall, we show that this simple yet powerful prompting strategy consistently outperforms both one-shot and supervised approaches, despite requiring minimal training or few-shot guidance. Our experimental setup can be found in our Github repository github.sydney.edu.au/htri0928/least-to-most-phishing-detection.
title Eliciting Least-to-Most Reasoning for Phishing URL Detection
topic Cryptography and Security
Artificial Intelligence
url https://arxiv.org/abs/2601.20270