中文
相关论文

相关论文: Cyber-Deception and Attribution in Capture-the-Fla…

200 篇论文

We empirically evaluate whether AI systems are more effective at attacking or defending in cybersecurity. Using CAI (Cybersecurity AI)'s parallel execution framework, we deployed autonomous agents in 23 Attack/Defense CTF battlegrounds.…

The increase of connectivity and the impact it has in every day life is raising new and existing security problems that are becoming important for social good. We introduce two particular problems: cyber attack attribution and regulatory…

密码学与安全 · 计算机科学 2017-05-03 Erisa Karafili , Antonis C. Kakas , Nikolaos I. Spanoudakis , Emil C. Lupu

These days, cyber-criminals target humans rather than machines since they try to accomplish their malicious intentions by exploiting the weaknesses of end users. Thus, human vulnerabilities pose a serious threat to the security and…

Cyber deception techniques that are tightly intertwined with applications pose significant technical challenges in production systems. Security measures are usually the responsibility of a system operator, but they are typically limited to…

密码学与安全 · 计算机科学 2024-08-12 Mario Kahlhofer , Stefan Rass

Adversaries (hackers) attempting to infiltrate networks frequently face uncertainty in their operational environments. This research explores the ability to model and detect when they exhibit ambiguity aversion, a cognitive bias reflecting…

密码学与安全 · 计算机科学 2025-12-22 Stephan Carney , Soham Hans , Sofia Hirschmann , Stacey Marsella , Yvonne Fonken , Peggy Wu , Nikolos Gurney

With the ever-changing landscape of cyber threats, identifying their origin has become paramount, surpassing the simple task of attack classification. Cyber threat attribution gives security analysts the insights they need to device…

密码学与安全 · 计算机科学 2025-09-16 Rimsha Kanwal , Umara Noor , Zafar Iqbal , Zahid Rashid

"What Should be Hidden and Open in Computer Security: Lessons from Deception, the Art of War, Law, and Economic Theory" Peter P. Swire, George Washington University. Imagine a military base. It is defended against possible attack. Do we…

密码学与安全 · 计算机科学 2007-05-23 Peter P. Swire

System operators responsible for protecting software applications remain hesitant to implement cyber deception technology, including methods that place traps to catch attackers, despite its proven benefits. Overcoming their concerns removes…

密码学与安全 · 计算机科学 2025-07-08 Mario Kahlhofer , Matteo Golinelli , Stefan Rass

Recent years have witnessed a rise in the frequency and intensity of cyberattacks targeted at critical infrastructure systems. This study designs a versatile, data-driven cyberattack detection platform for infrastructure systems…

密码学与安全 · 计算机科学 2018-06-01 Sarin E. Chandy , Amin Rasekh , Zachary A. Barker , M. Ehsan Shafiee

Cybersecurity of space infrastructures is an emerging topic, despite space-related cybersecurity incidents occurring as early as 1977 (i.e., hijacking of a satellite transmission signal). There is no single dataset that documents cyber…

密码学与安全 · 计算机科学 2025-12-03 Ekzhin Ear , Jose Luis Castanon Remy , Caleb Chang , Qiren Que , Antonia Feffer , Shouhuai Xu

This paper explores coordinated deception strategies by synchronizing defenses across coupled cyber and physical systems to mislead attackers and strengthen defense mechanisms. We introduce a Stackelberg game framework to model the…

密码学与安全 · 计算机科学 2026-01-07 Md Abu Sayed , Asif Rahman , Ahmed Hemida , Christopher Kiekintveld , Charles Kamhoua

The crowd sourced security industry, particularly bug bounty programs, has grown dramatically over the past years and has become the main source of software security reviews for many companies. However, the academic literature has largely…

密码学与安全 · 计算机科学 2022-04-28 Alejandro Cuevas , Emma Hogan , Hanan Hibshi , Nicolas Christin

Rooted in collaborative efforts, cybersecurity spans the scope of cyber competitions and warfare. Despite extensive research into team strategy in sports and project management, empirical study in cyber-security is minimal. This gap…

密码学与安全 · 计算机科学 2023-07-21 Tristan J. Calay , Basheer Qolomany , Aos Mulahuwaish , Liaquat Hossain , Jacques Bou Abdo

Deception plays a key role in adversarial or strategic interactions for the purpose of self-defence and survival. This paper introduces a general framework and solution to address deception. Most existing approaches for deception consider…

人工智能 · 计算机科学 2019-04-26 Bo Wu , Murat Cubuktepe , Suda Bharadwaj , Ufuk Topcu

Penetration testing is a security exercise aimed at assessing the security of a system by simulating attacks against it. So far, penetration testing has been carried out mainly by trained human attackers and its success critically depended…

密码学与安全 · 计算机科学 2021-05-25 Fabio Massimo Zennaro , Laszlo Erdodi

Capture the Flag (CTF) competitions are increasingly important for the Brazilian cybersecurity community as education and professional tools. Unfortunately, CTF platforms may suffer from security issues, giving an unfair advantage to…

密码学与安全 · 计算机科学 2019-02-08 Paulo Matias , Pedro Barbosa , Thiago Cardoso , Diego Mariano , Diego Aranha

In this paper, we present CTF Pilot, a GitOps-based framework for the deployment and management of Capture The Flag (CTF) competitions. By leveraging Git repositories as the single source of truth for challenge definitions and…

软件工程 · 计算机科学 2026-03-18 Mikkel Bengtson Albrechtsen , Jacopo Mauro , Torben Worm

Rigorously characterizing the statistical properties of cyber attacks is an important problem. In this paper, we propose the {\em first} statistical framework for rigorously analyzing honeypot-captured cyber attack data. The framework is…

密码学与安全 · 计算机科学 2016-03-25 Zhenxin Zhan , Maochao Xu , Shouhuai Xu

Cyber attacks are growing in frequency and severity. Over the past year alone we have witnessed massive data breaches that stole personal information of millions of people and wide-scale ransomware attacks that paralyzed critical…

社会与信息网络 · 计算机科学 2018-06-13 Palash Goyal , KSM Tozammel Hossain , Ashok Deb , Nazgol Tavabi , Nathan Bartley , Andr'es Abeliuk , Emilio Ferrara , Kristina Lerman

While modern society benefits from a range of technological advancements, it also is exposed to an ever-increasing set of cybersecurity threats. These affect all areas of life including business, government, and individuals. To complement…

密码学与安全 · 计算机科学 2023-08-31 Maria Bada , Jason R. C. Nurse