Mitigating Spam Using Spatio-Temporal Reputation

نویسندگان

  • Andrew G. West
  • Adam J. Aviv
  • Jian Chang
  • Insup Lee
چکیده

In this paper we present Preventive Spatio-Temporal Aggregation (PRESTA), a reputation model that combines spatial and temporal features to produce values that are behavior predictive and useful in partialknowledge situations. To evaluate its effectiveness, we applied PRESTA in the domain of spam detection. Studying the temporal properties of IP blacklists, we found that 25% of IP addresses once listed on a blacklist were re-listed within 10 days. Further, during our evaluation period over 45% of IPs de-listed were re-listed. By using the IP address assignment hierarchy to define spatial groupings and leveraging these temporal statistics, PRESTA produces reputation values that correctly classify up to 50% of spam email not identified by blacklists alone, while maintaining low false-positive rates. When used in conjunction with blacklists, an average of 93% of spam emails are identified, and we find the system is consistent in maintaining this blockage rate even during periods of decreased blacklist performance. PRESTA spam filtering can be employed as an intermediate filter (perhaps in-network) prior to context-based analysis. Further, our spam detection system is scalable; computation can occur in near real-time and over 500,000 emails can be scored an hour. Comments University of Pennsylvania Department of Computer and Information Science Technical Report No. MSCIS-10-04. This technical report is available at ScholarlyCommons: http://repository.upenn.edu/cis_reports/916 Mitigating Spam Using Spatio-Temporal Reputation Andrew G. West Adam J. Aviv Jian Chang Insup Lee Dept. of Computer and Information Science University of Pennsylvania Philadelphia, PA {westand, aviv, jianchan, lee}@cis.upenn.edu

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Assessment of Neonate's Congenital Hypothyroidism Pattern Using Poisson Spatio-temporal Model in Disease Mapping under the Bayesian Paradigm during 2011-18 in Guilan, Iran

Background: Congenital Hypothyroidism (CH) is one of the reasons for mental retardation and defective growth in neonates. It can be treated if it is diagnosed early. The congenital hypothyroidism can be diagnosed using newborn screening in the first days after birth. Disease mapping helps to identify high-risk areas of the disease. This study aimed to evaluate the pattern of CH using the Poisso...

متن کامل

Best Practices in Using rePUtation-Based anti-sPam services for email secUrity

Opus One’s testing of Cisco IronPort’s SenderBase reputation service has shown that, when used as recommended, an average of 88% of spam can be identified and blocked without regard to content. Opus One’s testing of reputation services has shown that, when used as recommended, enterprise-class reputation services can identify and block an average of 88% of spam without regard to message content...

متن کامل

Spatio-Temporal Parameters' Changes in Gait of Male Elderly Subjects

Objectives: The purpose of this study was to compare spatio-temporal gait parameters between elderly and young male subjects. Methods & Materials: 57 able-bodied elderly (72±5.5 years) and 57 healthy young (25±8.5 years) subjects participated in this study. A four segment model consist of trunk, hip, shank, and foot with 10 reflective markers were used to define lower limbs. Kinematic data c...

متن کامل

Detecting Spammers with SNARE: Spatio-temporal Network-level Automatic Reputation Engine

Users and network administrators need ways to filter email messages based primarily on the reputation of the sender. Unfortunately, conventional mechanisms for sender reputation—notably, IP blacklists—are cumbersome to maintain and evadable. This paper investigates ways to infer the reputation of an email sender based solely on network-level features, without looking at the contents of a messag...

متن کامل

Detecting Spammers via Aggregated Historical Data Set

The battle between email service providers and senders of mass unsolicited emails (Spam) continues to gain traction. Vast numbers of Spam emails are sent mainly from automatic botnets distributed over the world. One method for mitigating Spam in a computationally efficient manner is fast and accurate blacklisting of the senders. In this work we propose a new sender reputation mechanism that is ...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2010