Detecting malicious tweets in twitter using runtime monitoring with hidden information
MetadataShow full item record
Although there is voluminous data flow in social media, it is still possible to create an effective system that can detect malicious activities within a shorter time and provide situational awareness. This thesis developed patterns for a probabilistic approach to identify malicious behavior by monitoring big data. We collected twenty-two thousand tweets from publicly available Twitter data and used them in our testing and validation processes. We combined deterministic and nondeterministic approaches to monitor and verify the system. In the deterministic part, we determined assertions by using natural language (NL) and associated formal specifications. We then specified visible and hidden parameters, which are used for subsequent identification of hidden parameters in Hidden Markov Model (HMM) techniques. In the nondeterministic part, we used probabilistic formal specifications with visible and hidden parameters, used in HMM, to monitor and verify the system. An important contribution of the work is that we specified some event patterns indicating malicious activities. Based on these patterns, we obtained output to indicate the possibility of each tweet being malicious.
Approved for public release; distribution is unlimited
Showing items related by title, author, creator and subject.
Drusinsky, Doron (2012-02); NPS-CS-12-002This paper describes a technique for behavioral and temporal pattern detection within financial data, such as credit card and bank account data, where the required information is only partially visible. Typically, transaction ...
Gerhard, Katherine Leigh (Cambridge, Massachussetts, Massachussetts Institute of Technology, 2013-06);In 2011, the Laboratory for Electromagnetic and Electronic Systems proposed a new type of vibration monitoring systems, entitled Vibration Assessment Monitoring Point with Integrated Recovery of Energy or VAMPIRE, in their ...
Drusinsky, Doron; Shing, Man-Tak (2003);Run-time monitoring of temporal properties and assertions is used for testing and as a component of execution-based model checking techniques. Traditional run-time monitoring however, is limited to observing sequences of ...