{"id":"https://openalex.org/W1996058992","doi":"https://doi.org/10.1145/2751323.2751326","title":"Fox in the trap","display_name":"Fox in the trap","publication_year":2015,"publication_date":"2015-04-13","ids":{"openalex":"https://openalex.org/W1996058992","doi":"https://doi.org/10.1145/2751323.2751326","mag":"1996058992"},"language":"en","primary_location":{"id":"doi:10.1145/2751323.2751326","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2751323.2751326","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Eighth European Workshop on System Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5076738279","display_name":"Jonathan Voris","orcid":"https://orcid.org/0000-0003-0899-5674"},"institutions":[],"countries":[],"is_corresponding":true,"raw_author_name":"Jonathan Voris","raw_affiliation_strings":["New York Institute of Technology"],"affiliations":[{"raw_affiliation_string":"New York Institute of Technology","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5054526173","display_name":"Jill Jermyn","orcid":null},"institutions":[{"id":"https://openalex.org/I78577930","display_name":"Columbia University","ror":"https://ror.org/00hj8s172","country_code":"US","type":"education","lineage":["https://openalex.org/I78577930"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Jill Jermyn","raw_affiliation_strings":["Columbia University"],"affiliations":[{"raw_affiliation_string":"Columbia University","institution_ids":["https://openalex.org/I78577930"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5056712600","display_name":"Nathaniel Boggs","orcid":null},"institutions":[{"id":"https://openalex.org/I78577930","display_name":"Columbia University","ror":"https://ror.org/00hj8s172","country_code":"US","type":"education","lineage":["https://openalex.org/I78577930"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Nathaniel Boggs","raw_affiliation_strings":["Columbia University"],"affiliations":[{"raw_affiliation_string":"Columbia University","institution_ids":["https://openalex.org/I78577930"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5084213178","display_name":"Salvatore J. Stolfo","orcid":"https://orcid.org/0000-0003-1611-0100"},"institutions":[{"id":"https://openalex.org/I78577930","display_name":"Columbia University","ror":"https://ror.org/00hj8s172","country_code":"US","type":"education","lineage":["https://openalex.org/I78577930"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Salvatore Stolfo","raw_affiliation_strings":["Columbia University"],"affiliations":[{"raw_affiliation_string":"Columbia University","institution_ids":["https://openalex.org/I78577930"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5076738279"],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":3.4461,"has_fulltext":false,"cited_by_count":34,"citation_normalized_percentile":{"value":0.93143257,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":94,"max":98},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"7"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11800","display_name":"User Authentication and Security Systems","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11644","display_name":"Spam and Phishing Detection","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/decoy","display_name":"Decoy","score":0.9762942790985107},{"id":"https://openalex.org/keywords/software-deployment","display_name":"Software deployment","score":0.748681902885437},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7309447526931763},{"id":"https://openalex.org/keywords/insider-threat","display_name":"Insider threat","score":0.7164487838745117},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6851311922073364},{"id":"https://openalex.org/keywords/insider","display_name":"Insider","score":0.6838418841362},{"id":"https://openalex.org/keywords/scalability","display_name":"Scalability","score":0.5953475832939148},{"id":"https://openalex.org/keywords/trap","display_name":"Trap (plumbing)","score":0.5686469078063965},{"id":"https://openalex.org/keywords/compromise","display_name":"Compromise","score":0.48620954155921936},{"id":"https://openalex.org/keywords/database","display_name":"Database","score":0.18278250098228455},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.13813984394073486},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.11117163300514221}],"concepts":[{"id":"https://openalex.org/C2779179475","wikidata":"https://www.wikidata.org/wiki/Q3545649","display_name":"Decoy","level":3,"score":0.9762942790985107},{"id":"https://openalex.org/C105339364","wikidata":"https://www.wikidata.org/wiki/Q2297740","display_name":"Software deployment","level":2,"score":0.748681902885437},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7309447526931763},{"id":"https://openalex.org/C2776633304","wikidata":"https://www.wikidata.org/wiki/Q6038026","display_name":"Insider threat","level":3,"score":0.7164487838745117},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6851311922073364},{"id":"https://openalex.org/C2778971194","wikidata":"https://www.wikidata.org/wiki/Q1664551","display_name":"Insider","level":2,"score":0.6838418841362},{"id":"https://openalex.org/C48044578","wikidata":"https://www.wikidata.org/wiki/Q727490","display_name":"Scalability","level":2,"score":0.5953475832939148},{"id":"https://openalex.org/C121099081","wikidata":"https://www.wikidata.org/wiki/Q665580","display_name":"Trap (plumbing)","level":2,"score":0.5686469078063965},{"id":"https://openalex.org/C46355384","wikidata":"https://www.wikidata.org/wiki/Q726686","display_name":"Compromise","level":2,"score":0.48620954155921936},{"id":"https://openalex.org/C77088390","wikidata":"https://www.wikidata.org/wiki/Q8513","display_name":"Database","level":1,"score":0.18278250098228455},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.13813984394073486},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.11117163300514221},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C36289849","wikidata":"https://www.wikidata.org/wiki/Q34749","display_name":"Social science","level":1,"score":0.0},{"id":"https://openalex.org/C170493617","wikidata":"https://www.wikidata.org/wiki/Q208467","display_name":"Receptor","level":2,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C199539241","wikidata":"https://www.wikidata.org/wiki/Q7748","display_name":"Law","level":1,"score":0.0},{"id":"https://openalex.org/C17744445","wikidata":"https://www.wikidata.org/wiki/Q36442","display_name":"Political science","level":0,"score":0.0},{"id":"https://openalex.org/C87717796","wikidata":"https://www.wikidata.org/wiki/Q146326","display_name":"Environmental engineering","level":1,"score":0.0},{"id":"https://openalex.org/C144024400","wikidata":"https://www.wikidata.org/wiki/Q21201","display_name":"Sociology","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/2751323.2751326","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2751323.2751326","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Eighth European Workshop on System Security","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions","score":0.7799999713897705}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":9,"referenced_works":["https://openalex.org/W1506215424","https://openalex.org/W1536598138","https://openalex.org/W1665985821","https://openalex.org/W2072610876","https://openalex.org/W2093397575","https://openalex.org/W2130778370","https://openalex.org/W6632257772","https://openalex.org/W6679666242","https://openalex.org/W6780953583"],"related_works":["https://openalex.org/W2766781562","https://openalex.org/W4205304595","https://openalex.org/W2979782961","https://openalex.org/W308359497","https://openalex.org/W1499596878","https://openalex.org/W3136170567","https://openalex.org/W2947769183","https://openalex.org/W2018332730","https://openalex.org/W4387194049","https://openalex.org/W2286217954"],"abstract_inverted_index":{"Organizations":[0],"face":[1],"a":[2,52,70,90,129],"persistent":[3],"challenge":[4],"detecting":[5],"malicious":[6,61],"insiders":[7],"as":[8,10,20],"well":[9],"outside":[11],"attackers":[12],"who":[13],"compromise":[14],"legitimate":[15],"credentials":[16],"and":[17,49,63,100,158],"then":[18],"masquerade":[19],"insiders.":[21,64],"No":[22],"matter":[23],"how":[24],"good":[25],"an":[26],"organization's":[27],"perimeter":[28],"defenses":[29],"are,":[30],"eventually":[31],"they":[32],"will":[33],"be":[34,79],"compromised":[35],"or":[36],"betrayed":[37],"from":[38],"the":[39,58,83,95,140,146],"inside.":[40],"Monitored":[41],"decoy":[42,74,98,118,126,152,161],"documents":[43,99,153],"(honey":[44],"files":[45,127,162],"with":[46,167],"enticing":[47],"names":[48],"content)":[50],"are":[51],"promising":[53],"approach":[54],"to":[55,81,107,135],"aid":[56],"in":[57,128],"detection":[59],"of":[60,85,97,123],"masqueraders":[62],"In":[65,139],"this":[66],"paper,":[67],"we":[68,101,144],"present":[69],"new":[71],"technique":[72],"for":[73],"document":[75],"distribution":[76,119],"that":[77,93,115,131,148,160],"can":[78],"used":[80],"improve":[82],"scalability":[84],"insider":[86],"detection.":[87],"We":[88],"develop":[89],"placement":[91],"application":[92],"automates":[94],"deployment":[96],"report":[102],"on":[103,154],"two":[104],"user":[105,142,169],"studies":[106],"evaluate":[108],"its":[109],"effectiveness.":[110],"The":[111],"first":[112],"study":[113],"indicates":[114],"our":[116],"automated":[117],"tool":[120],"is":[121],"capable":[122],"strategically":[124],"placing":[125],"way":[130],"offers":[132],"comparable":[133],"security":[134],"optimal":[136],"manual":[137],"deployment.":[138],"second":[141],"study,":[143],"measure":[145],"frequency":[147],"normal":[149,168],"users":[150],"access":[151],"their":[155],"own":[156],"systems":[157],"show":[159],"do":[163],"not":[164],"significantly":[165],"interfere":[166],"tasks.":[170]},"counts_by_year":[{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":3},{"year":2023,"cited_by_count":2},{"year":2022,"cited_by_count":2},{"year":2021,"cited_by_count":6},{"year":2020,"cited_by_count":3},{"year":2019,"cited_by_count":3},{"year":2018,"cited_by_count":4},{"year":2017,"cited_by_count":4},{"year":2016,"cited_by_count":4}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2016-06-24T00:00:00"}
