{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,24]],"date-time":"2026-04-24T15:20:15Z","timestamp":1777044015145,"version":"3.51.4"},"reference-count":42,"publisher":"IEEE","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2014,6]]},"DOI":"10.1109\/cycon.2014.6916397","type":"proceedings-article","created":{"date-parts":[[2014,10,8]],"date-time":"2014-10-08T21:36:10Z","timestamp":1412804170000},"page":"87-97","source":"Crossref","is-referenced-by-count":40,"title":["Changing the game: The art of deceiving sophisticated attackers"],"prefix":"10.1109","author":[{"given":"Nikos","family":"Virvilis","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bart","family":"Vanautgaerden","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Oscar Serrano","family":"Serrano","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"19","article-title":"Virtual Honeypots: From botnet tracking to intrusion detection","author":"provos","year":"2007","journal-title":"Pearson Education"},{"key":"35","doi-asserted-by":"publisher","DOI":"10.1145\/1028788.1028794"},{"key":"17","doi-asserted-by":"publisher","DOI":"10.1109\/IAW.2004.1437806"},{"key":"36","article-title":"Warfare with Malware: NATO faced with rising flood of cyberattacks","author":"gebauer","year":"2012","journal-title":"Spiegel Mons Belgium"},{"key":"18","doi-asserted-by":"publisher","DOI":"10.1109\/ISI.2011.5984063"},{"key":"33","doi-asserted-by":"crossref","first-page":"26","DOI":"10.1007\/978-3-642-15152-1_3","article-title":"An insider threat prediction model","author":"kandias","year":"2010","journal-title":"Trust Privacy and Security in Digital Business"},{"key":"15","author":"stoll","year":"1989","journal-title":"The Cuckoo's Egg Tracking a Spy Through the Maze of Computer Espionage"},{"key":"34","article-title":"What have we learned: FLAME malware","author":"fisher","year":"2012","journal-title":"Threat Post"},{"key":"16","doi-asserted-by":"publisher","DOI":"10.1109\/CSAC.2003.1254322"},{"key":"39","doi-asserted-by":"publisher","DOI":"10.1109\/MSECP.2003.1193207"},{"key":"13","author":"mitchell","year":"2000","journal-title":"Strategic Deception Rhetoric Science and Politics in Missile Defense Advocacy"},{"key":"14","author":"alexander","year":"2009","journal-title":"Electronic Warfare in Operations U S Army Field Manual FM 3-36"},{"key":"37","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-4302-2731-1_17"},{"key":"11","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2010.25"},{"key":"38","doi-asserted-by":"publisher","DOI":"10.1016\/j.artint.2009.11.010"},{"key":"12","author":"holt","year":"2010","journal-title":"The Deceivers Allied Military Deception in the Second World War"},{"key":"21","doi-asserted-by":"publisher","DOI":"10.1504\/IJICS.2010.031858"},{"key":"20","doi-asserted-by":"crossref","DOI":"10.1201\/b10738","author":"joshi","year":"2011","journal-title":"Honeypots A New Paradigm to Information Security"},{"key":"42","doi-asserted-by":"publisher","DOI":"10.1016\/j.eswa.2009.05.029"},{"key":"41","doi-asserted-by":"crossref","first-page":"22","DOI":"10.1109\/MSP.2009.109","article-title":"Designing host and network sensors to mitigate the insider threat","volume":"7","author":"bowen","year":"2013","journal-title":"IEEE Security and Privacy"},{"key":"40","article-title":"Securing and auditing high risk files on windows servers","author":"melber","year":"2013","journal-title":"Windows Security"},{"key":"22","doi-asserted-by":"publisher","DOI":"10.1109\/DSN.2006.38"},{"key":"23","doi-asserted-by":"publisher","DOI":"10.1016\/j.diin.2008.05.012"},{"key":"24","doi-asserted-by":"crossref","first-page":"199","DOI":"10.3233\/JCS-2011-0439","article-title":"A system for generating and injecting indistinguishable network decoys","volume":"20","author":"bowen","year":"2012","journal-title":"Journal of Computer Security"},{"key":"25","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-4419-7133-3_9"},{"key":"26","article-title":"Canary Files: Generating fake files to detect critical data loss from complex computer networks","author":"whitham","year":"2013","journal-title":"Second International Conference on Cyber Security Cyber Peacefare and Digital Forensic (CyberSec2013)"},{"key":"27","author":"voris","year":"2013","journal-title":"Bait and Snitch Defending Computer Systems with Decoys"},{"key":"28","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-22424-9_3"},{"key":"29","article-title":"Common sense guide to mitigating insider Threats (4th Edition)","volume":"677","author":"silowash","year":"2012","journal-title":"Software Engineering Institute"},{"key":"3","article-title":"Google hack attack was ultra sophisticated, new details show","volume":"14","author":"zetter","year":"2010","journal-title":"Wired Magazine"},{"key":"2","doi-asserted-by":"publisher","DOI":"10.1080\/00396338.2012.709391"},{"key":"10","doi-asserted-by":"publisher","DOI":"10.1109\/UIC-ATC.2013.80"},{"key":"1","article-title":"China emerges as leader in cyberwarfare","author":"marquand","year":"2007","journal-title":"The Christian Science Monitor"},{"key":"30","author":"gellman","year":"0","journal-title":"Edward Snowden Says Motive behind Leaks Was to Expose 'Surveillance State"},{"key":"7","author":"cole","year":"2012","journal-title":"Advanced Persistent Threat Understanding the Danger and How to Protect Your Organization"},{"key":"6","author":"nicks","year":"2012","journal-title":"Private Bradley Manning WikiLeaks and the Biggest Exposure of Offi Cial Secrets in American History"},{"key":"32","article-title":"The stuxnet virus at iran's nuclear facility was planted by an iranian double agent","author":"kelley","year":"2012","journal-title":"Military & Defense"},{"key":"5","article-title":"NSA chief says Snowden leaked up to 200,000 secret documents","author":"hosenball","year":"2013","journal-title":"Reuters 14-Nov"},{"key":"31","author":"hudson","year":"0","journal-title":"Deciphering How Edward Snowden Breached the NSA"},{"key":"4","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2011.67"},{"key":"9","doi-asserted-by":"publisher","DOI":"10.1109\/ARES.2013.32"},{"key":"8","author":"bejtlich","year":"2013","journal-title":"The Practice of Network Security Monitoring Understanding Incident Detection and Response"}],"event":{"name":"2014 6th International Conference on Cyber Conflict (CyCon)","location":"Tallinn, Estonia","start":{"date-parts":[[2014,6,3]]},"end":{"date-parts":[[2014,6,6]]}},"container-title":["2014 6th International Conference On Cyber Conflict (CyCon 2014)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/6876058\/6916383\/06916397.pdf?arnumber=6916397","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,8,16]],"date-time":"2019-08-16T00:48:33Z","timestamp":1565916513000},"score":1,"resource":{"primary":{"URL":"http:\/\/ieeexplore.ieee.org\/document\/6916397\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2014,6]]},"references-count":42,"URL":"https:\/\/doi.org\/10.1109\/cycon.2014.6916397","relation":{},"subject":[],"published":{"date-parts":[[2014,6]]}}}