中文
相关论文

相关论文: Gotta catch 'em all: a Multistage Framework for ho…

200 篇论文

SQL injection remains a major threat to web applications, as existing defenses often fail against obfuscation and evolving attacks because of neglecting the request-response context. This paper presents a context-enriched SQL injection…

密码学与安全 · 计算机科学 2026-03-04 Hao Yu , Hui Li , FengYuan Shi , Wenjie Yu , PinHan Ho , Zehua Wang , Bin Wang

Deception is being increasingly explored as a cyberdefense strategy to protect operational systems. We are studying implementation of deception-in-depth strategies with initially three logical layers: network, host, and data. We draw ideas…

密码学与安全 · 计算机科学 2024-12-24 Jason Landsborough , Neil C. Rowe , Thuy D. Nguyen , Sunny Fugate

Electronic bait (honeypots) are network resources whose value consists of being attacked and compromised. These are often computers which do not have a task in the network, but are otherwise indestinguishable from regular computers. Such…

密码学与安全 · 计算机科学 2007-05-23 Maximillian Dornseif , Felix C. Gaertner , Thorsten Holz

Passive operating system fingerprinting reveals valuable information to the defenders of heterogeneous private networks; at the same time, attackers can use fingerprinting to reconnoiter networks, so defenders need obfuscation techniques to…

密码学与安全 · 计算机科学 2017-06-27 Blake Anderson , David McGrew

Honeyfiles are a particularly useful type of honeypot: fake files deployed to detect and infer information from malicious behaviour. This paper considers the challenge of naming honeyfiles so they are camouflaged when placed amongst real…

密码学与安全 · 计算机科学 2024-05-13 Roelien C. Timmer , David Liebowitz , Surya Nepal , Salil S. Kanhere

The proliferation of insecure Internet-connected devices gave rise to the IoT botnets which can grow very large rapidly and may perform high-impact cyber-attacks. The related studies for tackling IoT botnets are concerned with either…

密码学与安全 · 计算机科学 2021-09-13 Tolijan Trajanovski , Ning Zhang

Large language models (LLMs) are increasingly vulnerable to multi-turn jailbreak attacks, where adversaries iteratively elicit harmful behaviors that bypass single-turn safety filters. Existing defenses predominantly rely on passive…

密码学与安全 · 计算机科学 2025-10-20 ChenYu Wu , Yi Wang , Yang Liao

Although sufficient authentication mechanisms were enhanced by the use of two or more factors that resulted in new multi factor authentication schemes, more sophisticated and targeted attacks have shown they are also vulnerable. This…

Lateral movement of advanced persistent threats has posed a severe security challenge. Due to the stealthy and persistent nature of the lateral movement, defenders need to consider time and spatial locations holistically to discover latent…

网络与互联网体系结构 · 计算机科学 2020-10-07 Linan Huang , Quanyan Zhu

Privacy is of the utmost concern when it comes to releasing data to third parties. Data owners rely on anonymization approaches to safeguard the released datasets against re-identification attacks. However, even with strict anonymization in…

密码学与安全 · 计算机科学 2021-08-18 Spiros Antonatos , Stefano Braghin , Naoise Holohan , Pol MacAonghusa

We performed the first systematic study of a new attack on Ethereum that steals cryptocurrencies. The attack is due to the unprotected JSON-RPC endpoints existed in Ethereum nodes that could be exploited by attackers to transfer the Ether…

密码学与安全 · 计算机科学 2019-07-31 Zhen Cheng , Xinrui Hou , Runhuai Li , Yajin Zhou , Xiapu Luo , Jinku Li , Kui Ren

In recent years, fingerprint recognition systems have made remarkable advancements in the field of biometric security as it plays an important role in personal, national and global security. In spite of all these notable advancements, the…

计算机视觉与模式识别 · 计算机科学 2020-02-20 B. V. S Anusha , Sayan Banerjee , Subhasis Chaudhuri

Honeypots play a crucial role in implementing various cyber deception techniques as they possess the capability to divert attackers away from valuable assets. Careful strategic placement of honeypots in networks should consider not only…

计算机科学与博弈论 · 计算机科学 2023-09-20 Md Abu Sayed , Ahmed H. Anwar , Christopher Kiekintveld , Charles Kamhoua

Ethereum holds multiple billions of U.S. dollars in the form of Ether cryptocurrency and ERC-20 tokens, with millions of deployed smart contracts algorithmically operating these funds. Unsurprisingly, the security of Ethereum smart…

密码学与安全 · 计算机科学 2021-06-01 Nikolay Ivanov , Jianzhi Lou , Ting Chen , Jin Li , Qiben Yan

Industrial Control Systems (ICS) are extensively used in critical infrastructures ensuring efficient, reliable, and continuous operations. However, their increasing connectivity and addition of advanced features make them vulnerable to…

密码学与安全 · 计算机科学 2025-05-20 Christoforos Vasilatos , Dunia J. Mahboobeh , Hithem Lamri , Manaar Alam , Michail Maniatakos

A recent defense proposes to inject "honeypots" into neural networks in order to detect adversarial attacks. We break the baseline version of this defense by reducing the detection true positive rate to 0\% and the detection AUC to 0.02,…

密码学与安全 · 计算机科学 2020-09-24 Nicholas Carlini

In this paper, we provide an overview of fingerprint sensing methods used for authentication. We analyze the current fingerprint sensing technologies, from algorithmic, as well as from hardware perspectives. We then focus on methods to…

密码学与安全 · 计算机科学 2020-01-28 Filipp Demenschonok , Jason Harrigan , Tamara Bonaci

Deceptive patterns (DPs) are user interface designs deliberately crafted to manipulate users into unintended decisions, often by exploiting cognitive biases for the benefit of companies or services. While numerous studies have explored ways…

密码学与安全 · 计算机科学 2025-02-05 Zewei Shi , Ruoxi Sun , Jieshan Chen , Jiamou Sun , Minhui Xue , Yansong Gao , Feng Liu , Xingliang Yuan

Computer security has been plagued by increasing formidable, dynamic, hard-to-detect, hard-to-predict, and hard-to-characterize hacking techniques. Such techniques are very often deployed in self-propagating worms capable of automatically…

密码学与安全 · 计算机科学 2021-04-22 Valentino Crespi , Wes Hardaker , Sami Abu-El-Haija , Aram Galstyan

In today's world, computer networks have become vulnerable to numerous attacks. In both wireless and wired networks, one of the most common attacks is man-in-the-middle attacks, within which session hijacking, context confusion attacks have…

密码学与安全 · 计算机科学 2022-02-02 Kailash Gogineni , Yongsheng Mei , Guru Venkataramani , Tian Lan