Is Somebody Watching Your Facebook Newsfeed?
Shan-Hung Wu, Man-Ju Chou, Ming-Hung Wang, Chun-Hsiung Tseng, Yuh-Jye, Lee, Kuan-Ta Chen

TL;DR
This paper presents a continuous authentication method based on browsing behavior analysis to detect unauthorized SNS account usage stealing, achieving over 80% accuracy within 2 minutes.
Contribution
It introduces a novel behavioral analysis approach for detecting SNS account theft, addressing a gap in existing security measures.
Findings
Over 80% detection accuracy within 2 minutes
Over 90% detection accuracy after 7 minutes
Effective detection of usage stealing without traditional security methods
Abstract
With the popularity of Social Networking Services (SNS), more and more sensitive information are stored online and associated with SNS accounts. The obvious value of SNS accounts motivates the usage stealing problem -- unauthorized, stealthy use of SNS accounts on the devices owned/used by account owners without any technology hacks. For example, anxious parents may use their kids' SNS accounts to inspect the kids' social status; husbands/wives may use their spouses' SNS accounts to spot possible affairs. Usage stealing could happen anywhere in any form, and seriously invades the privacy of account owners. However, there is no any currently known defense against such usage stealing. To an SNS operator (e.g., Facebook Inc.), usage stealing is hard to detect using traditional methods because such attackers come from the same IP addresses/devices, use the same credentials, and share the…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsSpam and Phishing Detection · Network Security and Intrusion Detection · Advanced Malware Detection Techniques
