TSM: Measuring the Enticement of Honeyfiles with Natural Language Processing

03/15/2022
by   Roelien C. Timmer, et al.
0

Honeyfile deployment is a useful breach detection method in cyber deception that can also inform defenders about the intent and interests of intruders and malicious insiders. A key property of a honeyfile, enticement, is the extent to which the file can attract an intruder to interact with it. We introduce a novel metric, Topic Semantic Matching (TSM), which uses topic modelling to represent files in the repository and semantic matching in an embedding vector space to compare honeyfile text and topic words robustly. We also present a honeyfile corpus created with different Natural Language Processing (NLP) methods. Experiments show that TSM is effective in inter-corpus comparisons and is a promising tool to measure the enticement of honeyfiles. TSM is the first measure to use NLP techniques to quantify the enticement of honeyfile content that compares the essential topical content of local contexts to honeyfiles and is robust to paraphrasing.

READ FULL TEXT
research
07/23/2020

Word Embeddings: Stability and Semantic Change

Word embeddings are computed by a class of techniques within natural lan...
research
03/14/2023

Features matching using natural language processing

The feature matching is a basic step in matching different datasets. Thi...
research
10/28/2020

Graph-based Topic Extraction from Vector Embeddings of Text Documents: Application to a Corpus of News Articles

Production of news content is growing at an astonishing rate. To help ma...
research
02/07/2023

Natural Language Processing for Policymaking

Language is the medium for many political activities, from campaigns to ...
research
08/24/2023

Text Similarity from Image Contents using Statistical and Semantic Analysis Techniques

Plagiarism detection is one of the most researched areas among the Natur...
research
06/08/2016

On the Place of Text Data in Lifelogs, and Text Analysis via Semantic Facets

Current research in lifelog data has not paid enough attention to analys...
research
08/26/2022

Living-off-the-Land Abuse Detection Using Natural Language Processing and Supervised Learning

Living-off-the-Land is an evasion technique used by attackers where nati...

Please sign up or login with your details

Forgot password? Click here to reset