- ‘Avengers: Endgame’ sticks the devastating landing—and gives you time to grieve 4 Years Ago
- Teen hits Apple with $1 billion lawsuit over alleged face recognition arrest 4 Years Ago
- John Cornyn tried to attack Patton Oswalt for his old tweets and failed miserably Today 4:29 PM
- Logan Paul is selling a pillow of his dead dog—for a good cause Today 4:04 PM
- Study: Too much Netflix, not enough ‘chill’ Today 3:36 PM
- Pete Buttigieg under fire for saying incarcerated Americans shouldn’t be allowed to vote Today 2:54 PM
- Vine’s co-founder is beta testing a new app called Byte Today 2:51 PM
- Report: Joe Biden’s first 2020 fundraiser will be with a Comcast executive Today 2:49 PM
- Netflix’s ‘Sabrina’ appears to have an art-copying problem Today 2:47 PM
- People are crying over these cats’ window-sill romance Today 2:27 PM
- The ‘I’m baby’ meme is all about being comforted Today 2:24 PM
- Parody video totally nails what men are like on Tinder Today 1:57 PM
- Twitch star AriLove latest woman to be arbitrarily banned for ‘sexually suggestive’ attire Today 1:47 PM
- The 18 best Korean beauty sheet masks Today 1:25 PM
- Report: 5,000 Twitter bots pushed ‘Russiagate hoax’ after Mueller report Today 11:15 AM
New system automatically detects when your Twitter or Facebook account gets hacked
Social networks are a battlefield.
If that sounds strange, remember the 2013 hack against the Associated Press’s Twitter account that claimed a terror attack on the White House. Thanks to a single tweet from the AP account, which was shared thousands of times, the U.S. stock market instantly plummeted $136 billion before Twitter flagged the account as hacked. Or consider the last four years of Syrian Electronic Army attacks against major Western social media accounts and websites (including this one).
Given this vulnerability, a key question has arisen: How do you sniff out the hackers aiming for social media accounts that have become such impressively important and trusted megaphones?
A new system called COMPA quickly identifies compromised social network accounts by checking old habits against sudden changes, a significantly reliable way to detect hacked accounts, according to new research from American and British academics posted at Cornell University’s arXiv.
“COMPA is based on a simple observation: social network users develop habits over time, and these habits are fairly stable,” the researchers wrote.
“A typical social network user, for example, might consistently check her posts in the morning from her phone, and during the lunch break from her desktop computer. Furthermore, interaction will likely be limited to a moderate number of social network contacts (i.e., friends). Conversely, if the account falls under the control of an adversary, the messages that the attacker sends will likely show anomalies compared to the typical behavior of the user.”
COMPA builds a behavioral profile of each user based on a few pertinent questions—When do they post? How do they access the social network? What language do they write in? What kind of links do they send? Who are they connecting with?—and then watches for aberrations like an out-of-character tweet or a strange Facebook message that doesn’t match up.
When an action deviates from the behavioral profile, COMPA flags the account as potentially compromised.
One bizarre caveat originates in 2013, when the American restaurant Chipotle faked a social media hack as a publicity stunt. The hack fooled a lot of people—Chipotle’s Twitter account gained 1,600 percent more followers in a single day—but COMPA recognized the fraud, researchers boasted, because the fake hack actually matched previous behavior.
You can read the research below:
The research paper was written by Manuel Egele of Boston University, Gianluca Stringhini of University College London, as well as Christopher Kruegel and Giovanni Vigna of UC Santa Barbara.
Illustration by Max Fleishman
Patrick Howell O'Neill is a notable cybersecurity reporter whose work has focused on the dark net, national security, and law enforcement. A former senior writer at the Daily Dot, O'Neill joined CyberScoop in October 2016. I am a cybersecurity journalist at CyberScoop. I cover the security industry, national security and law enforcement.