- ‘Due to personal reasons’ meme enables questionable behavior Today 3:36 PM
- Why do white rappers write lyrics about being good hypothetical dads? Today 3:29 PM
- Roger Stone posts, then deletes, Instagram of his judge with small crosshairs next to her Today 2:32 PM
- People are Googling Rihanna and their birthday in a Twitter challenge Today 2:13 PM
- Here are all of the Fortnite earthquake cracks thus far Today 1:21 PM
- New Apex Legends characters leaked by data miners Today 12:36 PM
- Ken Jeong falls back on crude humor and lazy stereotypes in ‘You Complete Me, Ho’ Today 12:24 PM
- 14 artsy cartoon mugs that’ll help make your days more creative Today 12:15 PM
- Netflix cancels ‘Jessica Jones’ and ‘The Punisher’ Today 11:26 AM
- YouTube is fueling the rise in flat earth believers Today 11:04 AM
- Review: Crackdown 3 is not a world worth saving Today 11:00 AM
- Scathing privacy report calls Facebook a ‘digital gangster’ Today 10:50 AM
- 21 Savage goes deep on 21 Savage memes Today 10:49 AM
- Everyone is debating the number of towels you should own Today 10:47 AM
- How to unlock the Fortnite Prisoner stage 4 skin Today 10:45 AM
New system automatically detects when your Twitter or Facebook account gets hacked
Social networks are a battlefield.
If that sounds strange, remember the 2013 hack against the Associated Press’s Twitter account that claimed a terror attack on the White House. Thanks to a single tweet from the AP account, which was shared thousands of times, the U.S. stock market instantly plummeted $136 billion before Twitter flagged the account as hacked. Or consider the last four years of Syrian Electronic Army attacks against major Western social media accounts and websites (including this one).
Given this vulnerability, a key question has arisen: How do you sniff out the hackers aiming for social media accounts that have become such impressively important and trusted megaphones?
A new system called COMPA quickly identifies compromised social network accounts by checking old habits against sudden changes, a significantly reliable way to detect hacked accounts, according to new research from American and British academics posted at Cornell University’s arXiv.
“COMPA is based on a simple observation: social network users develop habits over time, and these habits are fairly stable,” the researchers wrote.
“A typical social network user, for example, might consistently check her posts in the morning from her phone, and during the lunch break from her desktop computer. Furthermore, interaction will likely be limited to a moderate number of social network contacts (i.e., friends). Conversely, if the account falls under the control of an adversary, the messages that the attacker sends will likely show anomalies compared to the typical behavior of the user.”
COMPA builds a behavioral profile of each user based on a few pertinent questions—When do they post? How do they access the social network? What language do they write in? What kind of links do they send? Who are they connecting with?—and then watches for aberrations like an out-of-character tweet or a strange Facebook message that doesn’t match up.
When an action deviates from the behavioral profile, COMPA flags the account as potentially compromised.
One bizarre caveat originates in 2013, when the American restaurant Chipotle faked a social media hack as a publicity stunt. The hack fooled a lot of people—Chipotle’s Twitter account gained 1,600 percent more followers in a single day—but COMPA recognized the fraud, researchers boasted, because the fake hack actually matched previous behavior.
You can read the research below:
The research paper was written by Manuel Egele of Boston University, Gianluca Stringhini of University College London, as well as Christopher Kruegel and Giovanni Vigna of UC Santa Barbara.
Illustration by Max Fleishman
Patrick Howell O'Neill is a notable cybersecurity reporter whose work has focused on the dark net, national security, and law enforcement. A former senior writer at the Daily Dot, O'Neill joined CyberScoop in October 2016. I am a cybersecurity journalist at CyberScoop. I cover the security industry, national security and law enforcement.