A Modular and Adaptive System for Business Email Compromise Detection

08/21/2023
by   Jan Brabec, et al.
0

The growing sophistication of Business Email Compromise (BEC) and spear phishing attacks poses significant challenges to organizations worldwide. The techniques featured in traditional spam and phishing detection are insufficient due to the tailored nature of modern BEC attacks as they often blend in with the regular benign traffic. Recent advances in machine learning, particularly in Natural Language Understanding (NLU), offer a promising avenue for combating such attacks but in a practical system, due to limitations such as data availability, operational costs, verdict explainability requirements or a need to robustly evolve the system, it is essential to combine multiple approaches together. We present CAPE, a comprehensive and efficient system for BEC detection that has been proven in a production environment for a period of over two years. Rather than being a single model, CAPE is a system that combines independent ML models and algorithms detecting BEC-related behaviors across various email modalities such as text, images, metadata and the email's communication context. This decomposition makes CAPE's verdicts naturally explainable. In the paper, we describe the design principles and constraints behind its architecture, as well as the challenges of model design, evaluation and adapting the system continuously through a Bayesian approach that combines limited data with domain knowledge. Furthermore, we elaborate on several specific behavioral detectors, such as those based on Transformer neural architectures.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
02/24/2023

Harnessing the Speed and Accuracy of Machine Learning to Advance Cybersecurity

As cyber attacks continue to increase in frequency and sophistication, d...
research
07/05/2021

Machine Learning for Fraud Detection in E-Commerce: A Research Agenda

Fraud detection and prevention play an important part in ensuring the su...
research
05/31/2021

Machine Learning for Security in Vehicular Networks: A Comprehensive Survey

Machine Learning (ML) has emerged as an attractive and viable technique ...
research
08/11/2021

Seven challenges for harmonizing explainability requirements

Regulators have signalled an interest in adopting explainable AI(XAI) te...
research
02/16/2021

Machine Learning Based Cyber Attacks Targeting on Controlled Information: A Survey

Stealing attack against controlled information, along with the increasin...
research
08/30/2022

FDB: Fraud Dataset Benchmark

Standardized datasets and benchmarks have spurred innovations in compute...
research
05/04/2023

Few-shot Domain-Adaptive Visually-fused Event Detection from Text

Incorporating auxiliary modalities such as images into event detection m...

Please sign up or login with your details

Forgot password? Click here to reset