Predicting Cyber-Events by Leveraging Hacker Sentiment
AbstractRecent high-profile cyber-attacks exemplify why organizations need better cyber-defenses. Cyber-threats are hard to accurately predict because attackers usually try to mask their traces. However, they often discuss exploits and techniques on hacking forums. The community behavior of the hackers may provide insights into the groups’ collective malicious activity. We propose a novel approach to predict cyber-events using sentiment analysis. We test our approach using cyber-attack data from two major business organizations. We consider three types of events: malicious software installation, malicious-destination visits, and malicious emails that surmounted the target organizations’ defenses. We construct predictive signals by applying sentiment analysis to hacker forum posts to better understand hacker behavior. We analyze over 400 K posts written between January 2016 and January 2018 on over 100 hacking forums both on the surface and dark web. We find that some forums have significantly more predictive power than others. Sentiment-based models that leverage specific forums can complement state-of-the-art time-series models on forecasting cyber-attacks weeks ahead of the events. View Full-Text
Share & Cite This Article
Deb, A.; Lerman, K.; Ferrara, E. Predicting Cyber-Events by Leveraging Hacker Sentiment. Information 2018, 9, 280.
Deb A, Lerman K, Ferrara E. Predicting Cyber-Events by Leveraging Hacker Sentiment. Information. 2018; 9(11):280.Chicago/Turabian Style
Deb, Ashok; Lerman, Kristina; Ferrara, Emilio. 2018. "Predicting Cyber-Events by Leveraging Hacker Sentiment." Information 9, no. 11: 280.
Note that from the first issue of 2016, MDPI journals use article numbers instead of page numbers. See further details here.