Predicting cyber threats through hacker social networks in darkweb and deepweb forums

Mohammed Almukaynizi, Alexander Grimm, Eric Nunes, Jana Shakarian, Paulo Shakarian

Research output: Chapter in Book/Report/Conference proceedingConference contribution

24 Scopus citations

Abstract

We present an approach that combines social network analysis with machine learning techniques to predict future cyber threats through darkweb/deepweb discussions with hacking-related content. Our approach harnesses features derived from hacker social networks and from online sources of cybersecurity advisories. We address the problem of predicting the exploitability of software vulnerabilities to show that features computed from hacker social networks are important indicators of future cybersecurity incidents. We conduct a suite of experiments on real-world hacker and exploit data and demonstrate that social network data improves recall by about 19%, F1 score by about 6% while maintaining precision. We believe this is because social network structures related to certain exploit authors is indicative of their ability to write exploits that are subsequently employed in an attack.

Original languageEnglish (US)
Title of host publicationProceedings of the 2017 International Conference of the Computational Social Science Society of the Americas, CSS 2017
PublisherAssociation for Computing Machinery
ISBN (Electronic)9781450352697
DOIs
StatePublished - Oct 19 2017
Event2017 International Conference of the Computational Social Science Society of the Americas, CSS 2017 - Santa Fe, United States
Duration: Oct 19 2017Oct 22 2017

Publication series

NameACM International Conference Proceeding Series

Other

Other2017 International Conference of the Computational Social Science Society of the Americas, CSS 2017
Country/TerritoryUnited States
CitySanta Fe
Period10/19/1710/22/17

ASJC Scopus subject areas

  • Software
  • Human-Computer Interaction
  • Computer Vision and Pattern Recognition
  • Computer Networks and Communications

Fingerprint

Dive into the research topics of 'Predicting cyber threats through hacker social networks in darkweb and deepweb forums'. Together they form a unique fingerprint.

Cite this