To Change Or To Stick: Unveiling The Consistency Of Cyber Criminal Signatures Through Statistical Analysis
Ronan Mouchoux, Fran\c{c}ois Moerman

TL;DR
This paper provides statistical evidence of consistent criminal signatures in cyber-attacks, using the A priori algorithm on extensive data to reveal enduring patterns in cybercriminal behavior.
Contribution
It introduces a novel application of the A priori algorithm to identify and validate persistent signatures of cybercriminals across a large corpus of cyber-attack data.
Findings
Existence of unique signatures associated with cybercriminals
Enduring patterns in cybercriminal modus operandi
Bridges gap between cyber behavior and criminology
Abstract
This study unveils the elusive presence of criminal signatures in cyberspace, validating for the first time their existence through statistical evidence. By applying the A priori algorithm to the modus operandi of Advanced Persistent Threats, extracted from an extensive corpus of over 17,000 articles spanning 2007 to 2020, we highlight the enduring patterns leveraged by sophisticated cyber criminals. Our findings verify the existence of unique signatures associated with advanced cybercriminals, bridging a crucial gap in current understanding of human behavior in cyber-attacks. This pivotal research sets the foundation for an entirely new academic intersection in cybersecurity and computational criminology.
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsDigital and Cyber Forensics · Authorship Attribution and Profiling
