本文已被:浏览 1751次 下载 2555次
Received:March 08, 2016 Revised:May 12, 2016
Received:March 08, 2016 Revised:May 12, 2016
中文摘要: 账户是社交网络、即时通信、电子商务等WEB应用领域中最常使用的用户标识方法.已有工作主要针对社交网络的攻击检测展开,检测对象多为垃圾消息和伪造账户.由此可见,现有研究存在检测领域覆盖不全以及检测对象缺少统一描述的问题.为了更好地进行该领域研究,首先提出以账户作为研究对象,依据恶意账户具备由攻击者控制并实施控制的特点,将该类账户统一定义为受控账户.其次,根据受控程度对研究对象进行分类,并将现有检测方法进行重新划分.再次,提出了使用统计学方法进行账户分类的思想,并在实验部分进行了受控账户的存在性验证.最后给出该领域问题的相关讨论,为受控账户的检测提供了新思路.
Abstract:Account has been widely used as the user identifier in WEB applications suck as Social Networks (SN), Instant Massager (IM) and E-Commerce. At present, most researchers focus on the social network attack detection which includes spam and fake accounts detection among SN envrionment. Obviously, current works are unable to cover all related fields and put forward unified description to the study objects. In order to solve these problems better, in this paper, firstly, we propose that the account is the only study object, and define malicious accounts controlled by attackers executing abnormal behaviors as manipulated account. Then, we classify the manipulated account according to the degree of control they suffered so as to categorize the detection methods by different kinds of manipulated account. Moreover, a statistical methods to classify the account have been promoted to verify the existence of manipulated account. Finally, we discussed some challenges and show some prospects about this area.
keywords: account-based application manipulated account classification anomaly detection power-law distribution behavior analysis
文章编号: 中图分类号: 文献标志码:
基金项目:广东省省级科技计划(2013B091300019);所级前瞻项目(Y5Z0031105)
引用文本:
宋晨,王远,王利明.受控账户检测技术研究.计算机系统应用,2016,25(11):1-13
SONG Chen,WANG Yuan,WANG Li-Ming.Research of Manipulated Account Detection.COMPUTER SYSTEMS APPLICATIONS,2016,25(11):1-13
宋晨,王远,王利明.受控账户检测技术研究.计算机系统应用,2016,25(11):1-13
SONG Chen,WANG Yuan,WANG Li-Ming.Research of Manipulated Account Detection.COMPUTER SYSTEMS APPLICATIONS,2016,25(11):1-13