Identity and behavior-based secure personalized message classification system

基于身份和行为的安全个性化消息分类系统

基本信息

  • 批准号:
    531909-2018
  • 负责人:
  • 金额:
    $ 9.08万
  • 依托单位:
  • 依托单位国家:
    加拿大
  • 项目类别:
    Idea to Innovation
  • 财政年份:
    2018
  • 资助国家:
    加拿大
  • 起止时间:
    2018-01-01 至 2019-12-31
  • 项目状态:
    已结题

项目摘要

Phishing is still currently one of the most impactful forms of attack delivered through electronic messages (i.e. emails, short messages, tweets). Targeted spearheaded phishing poses even more challenges as it relies on intimate knowledge of the victim gathered from online data dumps (e.g. in the dark web) or by hijacking online accounts. Recent high-profile hacking incidents have shown the limits of traditional anti-phishing solutions, such as spam filters and anti-virus systems. Those methods are heavily focused on analyzing the "message" and not the "messenger". As such it is easy to evade them by crafting the "message" to fit expected messaging standards (e.g. by removing spam idiosyncrasies and keywords, proof-reading the message, and using familiar terms and names). We have developed a new approach to protect against targeted spearheaded phishing attacks based on verifying the genuineness of the messenger's identity, and checking whether key message characteristics match the messaging behavior of the claimed messenger identity with respect to the recipient. The genuineness of the messenger's identity is established through stylometric authorship verification, which is known to be very challenging when dealing with short unstructured text. Messaging behavior is based on message origin location patterns (i.e. typical locations from where genuine messages were sent by this messenger), file attachment patterns (i.e. likelihood for the messenger to attach files of certain characteristics), and embedded URLs patterns (i.e. likelihood for the messenger to embed URLs). The proposed model is used to verify both incoming and outgoing messages. Checking outgoing messages allows determining whether a legitimate account has been hijacked and is being leveraged to send out phishing messages to victims known by the account owner. Checking incoming messages protects against phishing attacks by establishing whether the sender is genuine and known by the recipient. The goal of the proposed project is to further develop and extensively test a fully working prototype, in order to establish the commercial value of the technology in anticipation of transferring it to existing cybersecurity companies.**********
网络钓鱼目前仍然是通过电子消息(即电子邮件、短消息、推文)进行的最具影响力的攻击形式之一。定向带头网络钓鱼带来了更大的挑战,因为它依赖于从在线数据转储(例如,在黑暗网络中)或通过劫持在线账户收集的受害者的亲密知识。最近高调的黑客事件表明了传统反网络钓鱼解决方案的局限性,如垃圾邮件过滤器和反病毒系统。这些方法主要侧重于分析“信息”,而不是“信使”。因此,很容易通过制作符合预期消息传递标准的“消息”来规避它们(例如,通过删除垃圾邮件的特性和关键字、校对消息以及使用熟悉的术语和名称)。我们开发了一种新的方法来防御定向矛头网络钓鱼攻击,其基础是验证信使身份的真实性,并检查关键消息特征是否与声称的信使身份相对于收件人的消息传递行为匹配。信使身份的真实性是通过文体作者身份验证来确定的,众所周知,这在处理短的非结构化文本时非常具有挑战性。消息传递行为基于消息来源位置模式(即该信使发送真实消息的典型位置)、文件附件模式(即信使附加某些特征的文件的可能性)和嵌入URL模式(即信使嵌入URL的可能性)。提出的模型用于验证传入和传出消息。通过检查传出消息,可以确定合法帐户是否已被劫持,并被利用来向帐户所有者已知的受害者发送网络钓鱼消息。检查传入邮件可确定发件人是否真实且收件人是否知道,从而防止网络钓鱼攻击。拟议项目的目标是进一步开发和广泛测试完全工作的原型,以确定该技术的商业价值,并预期将其转让给现有的网络安全公司。

项目成果

期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Traore, Issa其他文献

A new biometric technology based on mouse dynamics
Hypervisor-based cloud intrusion detection through online multivariate statistical change tracking
  • DOI:
    10.1016/j.cose.2019.101646
  • 发表时间:
    2020-01-01
  • 期刊:
  • 影响因子:
    5.6
  • 作者:
    Aldribi, Abdulaziz;Traore, Issa;Nwamuo, Onyekachi
  • 通讯作者:
    Nwamuo, Onyekachi
Biometric Authentication Using Mouse Gesture Dynamics
  • DOI:
    10.1109/jsyst.2012.2221932
  • 发表时间:
    2013-06-01
  • 期刊:
  • 影响因子:
    4.4
  • 作者:
    Sayed, Bassam;Traore, Issa;Obaidat, Mohammad S.
  • 通讯作者:
    Obaidat, Mohammad S.
Secure mutual authentication and automated access control for IoT smart home using cumulative Keyed-hash chain
Detecting opinion spams and fake news using text classification
  • DOI:
    10.1002/spy2.9
  • 发表时间:
    2018-01-01
  • 期刊:
  • 影响因子:
    1.9
  • 作者:
    Ahmed, Hadeer;Traore, Issa;Saad, Sherif
  • 通讯作者:
    Saad, Sherif

Traore, Issa的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

{{ truncateString('Traore, Issa', 18)}}的其他基金

A Holistic Framework for Emerging Long-term Attacks Detection and Response Using Diverse Heterogeneous Data Sources
使用不同异构数据源检测和响应新兴长期攻击的整体框架
  • 批准号:
    RGPIN-2020-05321
  • 财政年份:
    2022
  • 资助金额:
    $ 9.08万
  • 项目类别:
    Discovery Grants Program - Individual
A Holistic Framework for Emerging Long-term Attacks Detection and Response Using Diverse Heterogeneous Data Sources
使用不同异构数据源检测和响应新兴长期攻击的整体框架
  • 批准号:
    RGPIN-2020-05321
  • 财政年份:
    2021
  • 资助金额:
    $ 9.08万
  • 项目类别:
    Discovery Grants Program - Individual
A Holistic Framework for Emerging Long-term Attacks Detection and Response Using Diverse Heterogeneous Data Sources
使用不同异构数据源检测和响应新兴长期攻击的整体框架
  • 批准号:
    RGPIN-2020-05321
  • 财政年份:
    2020
  • 资助金额:
    $ 9.08万
  • 项目类别:
    Discovery Grants Program - Individual
Novel Software-based Biometrics for Security of Mobile Devices
用于移动设备安全的基于软件的新型生物识别技术
  • 批准号:
    RGPIN-2015-04837
  • 财政年份:
    2019
  • 资助金额:
    $ 9.08万
  • 项目类别:
    Discovery Grants Program - Individual
Novel Software-based Biometrics for Security of Mobile Devices
用于移动设备安全的基于软件的新型生物识别技术
  • 批准号:
    RGPIN-2015-04837
  • 财政年份:
    2018
  • 资助金额:
    $ 9.08万
  • 项目类别:
    Discovery Grants Program - Individual
Identity and behavior - based secure personalized message classification systems: Market Assessment
基于身份和行为的安全个性化消息分类系统:市场评估
  • 批准号:
    520640-2017
  • 财政年份:
    2017
  • 资助金额:
    $ 9.08万
  • 项目类别:
    Idea to Innovation
Novel Software-based Biometrics for Security of Mobile Devices
用于移动设备安全的基于软件的新型生物识别技术
  • 批准号:
    RGPIN-2015-04837
  • 财政年份:
    2017
  • 资助金额:
    $ 9.08万
  • 项目类别:
    Discovery Grants Program - Individual
Novel Software-based Biometrics for Security of Mobile Devices
用于移动设备安全的基于软件的新型生物识别技术
  • 批准号:
    RGPIN-2015-04837
  • 财政年份:
    2016
  • 资助金额:
    $ 9.08万
  • 项目类别:
    Discovery Grants Program - Individual
Machine learning models for HTTP botnet detection
用于 HTTP 僵尸网络检测的机器学习模型
  • 批准号:
    505373-2016
  • 财政年份:
    2016
  • 资助金额:
    $ 9.08万
  • 项目类别:
    Engage Grants Program
Novel Software-based Biometrics for Security of Mobile Devices
用于移动设备安全的基于软件的新型生物识别技术
  • 批准号:
    RGPIN-2015-04837
  • 财政年份:
    2015
  • 资助金额:
    $ 9.08万
  • 项目类别:
    Discovery Grants Program - Individual

相似国自然基金

greenwashing behavior in China:Basedon an integrated view of reconfiguration of environmental authority and decoupling logic
  • 批准号:
  • 批准年份:
    2024
  • 资助金额:
    万元
  • 项目类别:
    外国学者研究基金项目
NbZrTi基多主元合金中化学不均匀性对辐照行为的影响研究
  • 批准号:
    12305290
  • 批准年份:
    2023
  • 资助金额:
    30.00 万元
  • 项目类别:
    青年科学基金项目
脂滴聚集型小胶质细胞介导的髓鞘病变促进小鼠抑郁样行为及其机制研究
  • 批准号:
    82371528
  • 批准年份:
    2023
  • 资助金额:
    49.00 万元
  • 项目类别:
    面上项目
Ni-20Cr合金梯度纳米结构的低温构筑及其腐蚀行为研究
  • 批准号:
    52301123
  • 批准年份:
    2023
  • 资助金额:
    30.00 万元
  • 项目类别:
    青年科学基金项目
儿童植入耳蜗后听觉行为与言语发展进程的关联性研究
  • 批准号:
    81170916
  • 批准年份:
    2011
  • 资助金额:
    65.0 万元
  • 项目类别:
    面上项目
基于约束行为的柔性精微机构设计方法研究
  • 批准号:
    50975007
  • 批准年份:
    2009
  • 资助金额:
    38.0 万元
  • 项目类别:
    面上项目
基于电刺激的动物运动行为控制方法研究
  • 批准号:
    60375026
  • 批准年份:
    2003
  • 资助金额:
    23.0 万元
  • 项目类别:
    面上项目

相似海外基金

An Experimental Evaluation of How Survey Measurement of Sexual Identity Affects Population Estimates of Identity-Based Differences in the Prevalence of Adverse Health Outcomes
性别认同的调查测量如何影响不良健康结果发生率中基于身份的差异的人口估计的实验评估
  • 批准号:
    10705744
  • 财政年份:
    2022
  • 资助金额:
    $ 9.08万
  • 项目类别:
An Experimental Evaluation of How Survey Measurement of Sexual Identity Affects Population Estimates of Identity-Based Differences in the Prevalence of Adverse Health Outcomes
性别认同的调查测量如何影响不良健康结果发生率中基于身份的差异的人口估计的实验评估
  • 批准号:
    10526008
  • 财政年份:
    2022
  • 资助金额:
    $ 9.08万
  • 项目类别:
Promoting Linguistic and Cultural Identity through Bilingual Children's Stories to Address Nutrition and Health in Indigenous Communities
通过双语儿童故事促进语言和文化认同,解决土著社区的营养和健康问题
  • 批准号:
    10484677
  • 财政年份:
    2022
  • 资助金额:
    $ 9.08万
  • 项目类别:
PFI-TT: Behavior-Based Account Recovery, Trust Assessment, and Continuous Authentication for Strengthening Online Identity
PFI-TT:基于行为的帐户恢复、信任评估和持续身份验证,以加强在线身份
  • 批准号:
    2122746
  • 财政年份:
    2021
  • 资助金额:
    $ 9.08万
  • 项目类别:
    Standard Grant
Identifying, refining, and testing sexual orientation and gender identity measures to detect and delineate sexual and gender minority populations for population research
识别、完善和测试性取向和性别认同措施,以检测和描绘性少数群体和性别少数群体,以进行人口研究
  • 批准号:
    10263276
  • 财政年份:
    2020
  • 资助金额:
    $ 9.08万
  • 项目类别:
Interpersonal- and Community-Level Risk Factors for Adolescent Obesity: An Examination of Sexual Identity, School Violence, and School Climate in a Large Sample of Urban Adolescents
青少年肥胖的人际和社区层面的风险因素:对大样本城市青少年的性别认同、学校暴力和学校氛围的调查
  • 批准号:
    10064659
  • 财政年份:
    2020
  • 资助金额:
    $ 9.08万
  • 项目类别:
Protecting the privacy of the child through facial identity removal in recorded behavioral observation sessions
通过在记录的行为观察会话中删除面部身份来保护儿童的隐私
  • 批准号:
    10042998
  • 财政年份:
    2020
  • 资助金额:
    $ 9.08万
  • 项目类别:
Interpersonal- and Community-Level Risk Factors for Adolescent Obesity: An Examination of Sexual Identity, School Violence, and School Climate in a Large Sample of Urban Adolescents
青少年肥胖的人际和社区层面的风险因素:对大样本城市青少年的性别认同、学校暴力和学校氛围的调查
  • 批准号:
    10212999
  • 财政年份:
    2020
  • 资助金额:
    $ 9.08万
  • 项目类别:
Identity and behavior - based secure personalized message classification systems: Market Assessment
基于身份和行为的安全个性化消息分类系统:市场评估
  • 批准号:
    520640-2017
  • 财政年份:
    2017
  • 资助金额:
    $ 9.08万
  • 项目类别:
    Idea to Innovation
Sexual Orientation/Gender Identity, Socioeconomic Status, and Health across the Life Course
性取向/性别认同、社会经济地位和整个生命过程的健康
  • 批准号:
    9916300
  • 财政年份:
    2017
  • 资助金额:
    $ 9.08万
  • 项目类别:
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了