A4 Refereed article in a conference publication
Towards Cyber Attribution by Deception
Authors: Rauti Sampsa
Editors: Ajith Abraham, Shishir K. Shandilya, Laura Garcia-Hernandez, Maria Leonilde Varela
Conference name: International Conference on Hybrid Intelligent Systems
Publication year: 2020
Journal: Advances in Intelligent Systems and Computing
Book title : Hybrid Intelligent Systems: 19th International Conference on Hybrid Intelligent Systems (HIS 2019) held in Bhopal, India, December 10-12, 2019
Series title: Advances in Intelligent Systems and Computing
Volume: 1179
First page : 419
Last page: 428
ISBN: 978-3-030-49335-6
eISBN: 978-3-030-49336-3
ISSN: 2194-5357
DOI: https://doi.org/10.1007/978-3-030-49336-3_41
Self-archived copy’s web address: https://research.utu.fi/converis/portal/detail/Publication/44608276
This paper discusses a technical solution that will help to bring the cyber defenders and investigators one step closer to successful cyber attribution: deception technology. The goal is to detect abnormal activities taking place in the computer system by planting so called fake entities into the system. These fake entities appear to be interesting and valuable for the attacker. The deceptive defense mechanism then waits for the malicious adversary to interact with these fake entities. A fake entity can be anything from a fabricated file to a fake user account in a system. This paper takes a look at how different fake entities can be used for cyber attribution. We conclude that deception technology and fake entities have lots of potential for further development when trying to solve the challenge of cyber attribution.
Downloadable publication This is an electronic reprint of the original article. |