Title :
Descriptive Analytics: Examining Expert Hackers in Web Forums
Author :
Abbasi, Ali ; Weifeng Li ; Benjamin, Victor ; Shiyu Hu ; Hsinchun Chen
Author_Institution :
Predictive Analytics Lab., Univ. of Virginia, Charlottesville, VA, USA
Abstract :
In recent years, understanding the people behind cybercrime from a hacker-centric perspective has drawn increased attention. Preliminary exploration in online hacker social dynamics has found that hackers extensively exchange information with others in online communities, including vulnerabilities, stolen data, etc. However, there is a lack of research that explores automated identification and characterization of expert hackers within online communities. In this research, we identify expert hackers and characterize their specialties by devising a scalable and generalizable framework leveraging two categories of features to analyze hacker forum content. The framework encompasses text analytics for key hacker identification and analysis. In the Text Analytics module, we employ an interaction coherence analysis (ICA) framework, to extract interactions among the users in hacker communities as topological feature. In Expert Identification & Analysis, we characterize each hacker with content features extracted with lexicon matching and structural features from the ICA component. Results reveal an interaction network and content-based clustering of key actors within the studied hacker community. Our project contributes to both social media analytics and cybersecurity research as we provide a complete analytical framework to analyze the key hackers from both an interaction network perspective and discussion content perspective. This framework can benefit cyber security researchers and practitioners by offering an inclusive angle for analyzing hacker social dynamics.
Keywords :
Internet; computer crime; pattern clustering; social networking (online); text analysis; ICA framework; Web forums; automated expert hacker characterization; automated expert hacker identification; content-based clustering; cybercrime; cybersecurity research; descriptive analytics; expert identification & analysis; hacker analysis; hacker social dynamics; hacker-centric perspective; interaction coherence analysis framework; lexicon matching; online communities; online hacker social dynamics; social media analytics; structural features; text analytics module; topological feature; Coherence; Communities; Computer hacking; Feature extraction; Social network services; Topology; cybersecurity; expert hacker; hacker forum; social media analytics; user generated content;
Conference_Titel :
Intelligence and Security Informatics Conference (JISIC), 2014 IEEE Joint
Conference_Location :
The Hague
Print_ISBN :
978-1-4799-6363-8
DOI :
10.1109/JISIC.2014.18