• KSII Transactions on Internet and Information Systems
    Monthly Online Journal (eISSN: 1976-7277)

EDGE: An Enticing Deceptive-content GEnerator as Defensive Deception

Vol. 15, No. 5, May 31, 2021
10.3837/tiis.2021.05.017, Download Paper (Free):

Abstract

Cyber deception defense mitigates Advanced Persistent Threats (APTs) with deploying deceptive entities, such as the Honeyfile. The Honeyfile distracts attackers from valuable digital documents and attracts unauthorized access by deliberately exposing fake content. The effectiveness of distraction and trap lies in the enticement of fake content. However, existing studies on the Honeyfile focus less on this perspective. In this work, we seek to improve the enticement of fake text content through enhancing its readability, indistinguishability, and believability. Hence, an enticing deceptive-content generator, EDGE, is presented. The EDGE is constructed with three steps: extracting key concepts with a semantics-aware K-means clustering algorithm, searching for candidate deceptive concepts within the Word2Vec model, and generating deceptive text content under the Integrated Readability Index (IR). Furthermore, the readability and believability performance analyses are undertaken. The experimental results show that EDGE generates indistinguishable deceptive text content without decreasing readability. In all, EDGE proves effective to generate enticing deceptive text content as deception defense against APTs.


Statistics

Show / Hide Statistics

Statistics (Cumulative Counts from December 1st, 2015)
Multiple requests among the same browser session are counted as one view.
If you mouse over a chart, the values of data points will be shown.


Cite this article

[IEEE Style]
H. Li, Y. Guo, S. Huo, Y. Ding, "EDGE: An Enticing Deceptive-content GEnerator as Defensive Deception," KSII Transactions on Internet and Information Systems, vol. 15, no. 5, pp. 1891-1908, 2021. DOI: 10.3837/tiis.2021.05.017.

[ACM Style]
Huanruo Li, Yunfei Guo, Shumin Huo, and Yuehang Ding. 2021. EDGE: An Enticing Deceptive-content GEnerator as Defensive Deception. KSII Transactions on Internet and Information Systems, 15, 5, (2021), 1891-1908. DOI: 10.3837/tiis.2021.05.017.

[BibTeX Style]
@article{tiis:24650, title="EDGE: An Enticing Deceptive-content GEnerator as Defensive Deception", author="Huanruo Li and Yunfei Guo and Shumin Huo and Yuehang Ding and ", journal="KSII Transactions on Internet and Information Systems", DOI={10.3837/tiis.2021.05.017}, volume={15}, number={5}, year="2021", month={May}, pages={1891-1908}}