Book Chapter

Misleading learners: Co-opting your spam filter

B Nelson, M Barreno, F Jack Chi, AD Joseph, BIP Rubinstein, U Saini, C Sutton, JD Tygar, K Xia

Machine Learning in Cyber Trust Security Privacy and Reliability | Published : 2009

Abstract

Using statistical machine learning for making security decisions introduces new vulnerabilities in large scale systems. We show how an adversary can exploit statistical machine learning, as used in the SpamBayes spam filter, to render it useless-even if the adversary's access is limited to only 1% of the spam training messages. We demonstrate three new attacks that successfully make the filter unusable, prevent victims from receiving specific email messages, and cause spam emails to arrive in the victim's inbox. © 2009 Springer-Verlag US.

University of Melbourne Researchers