NORMA eResearch @NCI Library

Semantic Text Embedding Framework for Phishing Email Detection: Leveraging Pretrained Language Models for Content-Based Threat Classification

Chinta, Pavan Kumar (2025) Semantic Text Embedding Framework for Phishing Email Detection: Leveraging Pretrained Language Models for Content-Based Threat Classification. Masters thesis, Dublin, National College of Ireland.

[thumbnail of Master of Science]
Preview
PDF (Master of Science)
Download (1MB) | Preview
[thumbnail of Configuration Manual]
Preview
PDF (Configuration Manual)
Download (1MB) | Preview

Abstract

Phishing emails are a constant danger to cybersecurity, and AI-generated assaults can evade detection systems by more than 96%. This study compares base pre-trained transformer embeddings to fine-tuned phrase transformers and conventional feature extraction techniques in order to address the dearth of comparative evaluation of text embedding methodologies for phishing detection. A three-tier embedding framework was implemented, extracting nine distinct representations from 83,084 curated phishing and legitimate emails: traditional methods (TF-IDF, bag-of-words), base semantic embeddings (BERT, RoBERTa, DistilBERT), and fine-tuned sentence transformers. Forty-five classifier-embedding combinations were rigorously analyzed using accuracy, F1-score, and AUC-ROC metrics. The results reveal that base pre-trained transformer embeddings produce improved detection performance, with RoBERTa-base paired with a multi-layer perceptron classifier obtaining 98.93% accuracy and 98.87% F1-score. Contrary to predictions, fine-tuned sentence transformers underperformed base models, demonstrating that semantic similarity optimisation decreases phishing-relevant information. Traditional approaches produced competitive performance (98.11% accuracy) with much decreased processing requirements. These findings give empirical insight for embedding selection in phishing detection systems, revealing that base transformer models offer best performance without fine-tuning overhead, while classic techniques remain viable for resource-constrained deployments.

Item Type: Thesis (Masters)
Supervisors:
Name
Email
Salahuddin, Jawad
UNSPECIFIED
Subjects: Q Science > QH Natural history > QH301 Biology > Methods of research. Technique. Experimental biology > Data processing. Bioinformatics > Artificial intelligence
Q Science > Q Science (General) > Self-organizing systems. Conscious automata > Artificial intelligence
P Language and Literature > P Philology. Linguistics > Computational linguistics. Natural language processing
Q Science > QA Mathematics > Computer software > Computer Security
T Technology > T Technology (General) > Information Technology > Computer software > Computer Security
Z Bibliography. Library Science. Information Resources > ZA Information resources > ZA4150 Computer Network Resources > The Internet > Electronic Mail
T Technology > TK Electrical engineering. Electronics. Nuclear engineering > Telecommunications > The Internet > Electronic Mail
Divisions: School of Computing > Master of Science in Cyber Security
Depositing User: Ciara O'Brien
Date Deposited: 03 Sep 2026 10:39
Last Modified: 03 Sep 2026 10:39
URI: https://norma.ncirl.ie/id/eprint/9793

Actions (login required)

View Item View Item