中文
相关论文

相关论文: Decoys in Cybersecurity: An Exploratory Study to T…

200 篇论文

We analyze two open source deep reinforcement learning agents submitted to the CAGE Challenge 2 cyber defense challenge, where each competitor submitted an agent to defend a simulated network against each of several provided rules-based…

密码学与安全 · 计算机科学 2025-06-11 Jared Claypoole , Steven Cheung , Ashish Gehani , Vinod Yegneswaran , Ahmad Ridley

Deception, which includes leading cyber-attackers astray with false information, has shown to be an effective method of thwarting cyber-attacks. There has been little investigation of the effect of probing action costs on adversarial…

密码学与安全 · 计算机科学 2024-01-09 Md Abu Sayed , Mohammad Ariful Islam Khan , Bryant A Allsup , Joshua Zamora , Palvi Aggarwal

Decoy passwords, or ``honeywords,'' alert a site to its breach if entered in a login attempt on that site. However, an attacker can identify a user-chosen password from among the decoys, without alerting the site to its breach, via…

密码学与安全 · 计算机科学 2026-05-14 Mridu Nanda , Michael K. Reiter

A reliable deepfake detector or spoofing countermeasure (CM) should be robust in the face of unpredictable spoofing attacks. To encourage the learning of more generaliseable artefacts, rather than those specific only to known attacks, CMs…

密码学与安全 · 计算机科学 2024-01-09 Wanying Ge , Xin Wang , Junichi Yamagishi , Massimiliano Todisco , Nicholas Evans

Over-sharing poorly-worded thoughts and personal information is prevalent on online social platforms. In many of these cases, users regret posting such content. To retrospectively rectify these errors in users' sharing decisions, most…

社会与信息网络 · 计算机科学 2020-05-29 Mohsen Minaei , S Chandra Mouli , Mainack Mondal , Bruno Ribeiro , Aniket Kate

In this chapter, we present an approach using formal methods to synthesize reactive defense strategy in a cyber network, equipped with a set of decoy systems. We first generalize formal graphical security models--attack graphs--to…

密码学与安全 · 计算机科学 2020-08-10 Abhishek N. Kulkarni , Jie Fu

Today's high-stakes adversarial interactions feature attackers who constantly breach the ever-improving security measures. Deception mitigates the defender's loss by misleading the attacker to make suboptimal decisions. In order to formally…

Mechanistic approaches to deception in large language models (LLMs) often rely on "lie detectors", that is, truth probes trained to identify internal representations of model outputs as false. The lie detector approach to LLM deception…

计算与语言 · 计算机科学 2026-03-12 Tom-Felix Berger

This paper presents an experimental study and the lessons learned from the observation of the attackers when logged on a compromised machine. The results are based on a six months period during which a controlled experiment has been run…

密码学与安全 · 计算机科学 2016-08-14 Eric Alata , Vincent Nicomette , Mohamed Kaâniche , Marc Dacier , Matthieu Herrb

Siren represents a pioneering research effort aimed at fortifying cybersecurity through strategic integration of deception, machine learning, and proactive threat analysis. Drawing inspiration from mythical sirens, this project employs…

密码学与安全 · 计算机科学 2025-06-25 Samhruth Ananthanarayanan , Girish Kulathumani , Ganesh Narayanan

We study a class of games, in which the adversary (attacker) is to satisfy a complex mission specified in linear temporal logic, and the defender is to prevent the adversary from achieving its goal. A deceptive defender can allocate decoys,…

计算机科学与博弈论 · 计算机科学 2020-10-06 Abhishek N. Kulkarni , Jie Fu , Huan Luo , Charles A. Kamhoua , Nandi O. Leslie

In an era dominated by digital interactions, phishing campaigns have evolved to exploit not just technological vulnerabilities but also human traits. This study takes an unprecedented deep dive into large-scale phishing campaigns aimed at…

密码学与安全 · 计算机科学 2023-10-06 Anargyros Chrysanthou , Yorgos Pantis , Constantinos Patsakis

Detecting digital face manipulation has attracted extensive attention due to fake media's potential harms to the public. However, recent advances have been able to reduce the forgery signals to a low magnitude. Decomposition, which…

计算机视觉与模式识别 · 计算机科学 2023-09-26 Xiangyu Zhu , Hao Wang , Hongyan Fei , Zhen Lei , Stan Z. Li

Deception detection is gaining increasing interest due to ethical and security concerns. This paper explores the application of convolutional neural networks for the purpose of multimodal deception detection. We use a dataset built by…

计算与语言 · 计算机科学 2024-11-13 Panfeng Li , Mohamed Abouelenien , Rada Mihalcea , Zhicheng Ding , Qikai Yang , Yiming Zhou

The Mirai Distributed Denial-of-Service (DDoS) attack exploited security vulnerabilities of Internet-of-Things (IoT) devices and thereby clearly signalled that attackers have IoT on their radar. Securing IoT is therefore imperative, but in…

网络与互联网体系结构 · 计算机科学 2018-07-12 Meng Wang , Javier Santillan , Fernando Kuipers

Model extraction attacks are one type of inference-time attacks that approximate the functionality and performance of a black-box victim model by launching a certain number of queries to the model and then leveraging the model's predictions…

密码学与安全 · 计算机科学 2025-01-03 Yixu Wang , Tianle Gu , Yan Teng , Yingchun Wang , Xingjun Ma

Honey Encryption is an approach to encrypt the messages using low min-entropy keys, such as weak passwords, OTPs, PINs, credit card numbers. The ciphertext is produces, when decrypted with any number of incorrect keys, produces…

密码学与安全 · 计算机科学 2020-11-02 Kunjal Panchal

Honeyfiles are a particularly useful type of honeypot: fake files deployed to detect and infer information from malicious behaviour. This paper considers the challenge of naming honeyfiles so they are camouflaged when placed amongst real…

密码学与安全 · 计算机科学 2024-05-13 Roelien C. Timmer , David Liebowitz , Surya Nepal , Salil S. Kanhere

Background: Deception detection is a prevalent problem for security practitioners. With a need for more large-scale approaches, automated methods using machine learning have gained traction. However, detection performance still implies…

计算与语言 · 计算机科学 2020-03-31 Bennett Kleinberg , Bruno Verschuere

We consider the case where an adversary is conducting a surveillance campaign against a networked control system (NCS), and take the perspective of a defender/control system operator who has successfully isolated the cyber intruder. To…

系统与控制 · 电气工程与系统科学 2024-10-21 Travis Cuvelier , Sean Ha , Maretta Morovitz