1 / 7

Spam Deobfuscation

Learn how to decode obfuscated spam text like "Get your Viagra pills here" to improve filter accuracy. Explore alignment techniques and decoding approaches for effective filtering.

dougp
Download Presentation

Spam Deobfuscation

An Image/Link below is provided (as is) to download presentation Download Policy: Content on the Website is provided to you AS IS for your information and personal use and may not be sold / licensed / shared on other websites without getting consent from its author. Content is provided to you AS IS for your information and personal use only. Download presentation by click this link. While downloading, if for some reason you are not able to download a presentation, the publisher may have deleted the file from their server. During download, if you can't get a presentation, the file might be deleted by the publisher.

E N D

Presentation Transcript


  1. Spam Deobfuscation Wissam Kazan Daniel Woods

  2. Problem Description Example Spam Text: Get your Viagra pills here When Obfuscated: G3t y0u*r \/|aGrra Pi11z |-|eer Problem: Reverse Obfuscation so Spam Filters Work

  3. Solution Breakdown • Decoding G3t y0u*r \/|aGrra Pi11z |-|eer xxxxxxxxxxxxxxx?xxxxxxxxxxxxxxx • Alignment G3t y0u*r \/|aGrra Pi11z |-|eer Get you-r V-iagr-a pills h--ere

  4. Alignment Example Original Text: Wissam Obfuscated Text: VV|sS/\m Naive Alignment: Wissa--m EM Alignment: W-issa-m Correct Alignment: W-issa-m (Result 1.4% error at 37.7% obfuscation)

  5. Decoding Approaches Example: G3t y0u*r \/|aGrra Pi11z |-|eer • Maximum Likelihood • HMM (Viterbi) G -> e -> t -> _ -> y –> o -> . . . | | | | | | G 3 t _ y 0 . . . Get y xx?xx Get y xx?xx Get_y xx?xx Get y xx?xx

  6. Results (37.7% Obfuscation)

  7. Example Result Obfuscated Text: a"bbove diGs{lqaiim3rss and+ e+XclAusXi70Nsd may nQoSt Apxply Correct Test: above disclaimers and exclusions may not apply HMM Prediction: abbove dislaimerss and tclusiond may not pply

More Related