{"id":1096,"date":"2010-06-16T09:08:14","date_gmt":"2010-06-16T09:08:14","guid":{"rendered":"http:\/\/nethemba.com\/cs\/honeybot\/"},"modified":"2010-06-16T09:08:14","modified_gmt":"2010-06-16T09:08:14","slug":"honeybot","status":"publish","type":"post","link":"https:\/\/nethemba.com\/cs\/honeybot\/","title":{"rendered":"HoneyBot"},"content":{"rendered":"<p>Predstavme si be\u017en\u00fa situ\u00e1ciu, pri ktorej chceme demon\u0161trova\u0165 \u00fatok pre konkr\u00e9tnu soci\u00e1lnu sie\u0165. Na\u0161im cie\u013eom bude napadn\u00fat \u010do najv\u00e4\u010d\u0161\u00ed po\u010det pou\u017e\u00edvate\u013eov, naj\u010dastej\u0161\u00ed pr\u00edklad je rozposielanie spamu alebo vyu\u017eitie nejakej XSS zranite\u013enosti na kontrolu \u00fa\u010dtov obet\u00ed. M\u00f4\u017eeme si k tomu pripravi\u0165 URL so \u0161kodliv\u00fdm k\u00f3dom.<\/p>\n<p>Jednou z nepochybne zauj\u00edmav\u00fdch mo\u017enost\u00ed je pou\u017ei\u0165 bota a automatizova\u0165 samotn\u00e9 soci\u00e1lne in\u017einierstvo. Strojov\u00e1 inteligencia je v\u0161ak st\u00e1le \u013eahko detekovate\u013en\u00e1. \u010co tak realizova\u0165 \u00fatoky typu MITM (man-in-the-middle)?<\/p>\n<p>Presne toto napadlo aj \u0161tyroch v\u00fdskumn\u00edkov z in\u0161tit\u00fatu EUROCOM vo Franc\u00fazsku &#8211; Tobias Lauinger, Veikko Pankakoski, Davide Balzarotti a Engin Kirda. Nap\u00edsali konkr\u00e9tnu implement\u00e1ciu, bota s n\u00e1zvom HoneyBot. Ten inicializuje spojenie (pozdrav\u00ed jednu z dvoch os\u00f4b) a n\u00e1sledne iba preposiela, pr\u00edpadne jemne modifikuje spr\u00e1vy medzi nimi.<\/p>\n<p><strong>Pr\u00edklad komunik\u00e1cie:<\/strong><br \/>\n<em>bot -&gt; alice: hi!<br \/>\nalice -&gt; bot: hello<br \/>\nbot -&gt; carl: hello<\/p>\n<p>carl -&gt; bot: hi there, how are you?<br \/>\nbot -&gt; alice: hi there, how are you?<br \/>\nalice -&gt; bot: &#8230;<\/em><\/p>\n<p>Autori si ur\u010dili ako \u010fa\u013e\u0161\u00ed cie\u013e:<\/p>\n<ul>\n<li>ovplyvni\u0165 t\u00e9mu rozhovoru<\/li>\n<li>p\u00f4sobi\u0165 d\u00f4veryhodne, aby osoby odklikli na botom poslan\u00e9 URL<\/li>\n<li>sna\u017ei\u0165 sa udr\u017ea\u0165 \u010do najdlh\u0161ie konverz\u00e1ciu<\/li>\n<\/ul>\n<p>Ke\u010f\u017ee na \u00fatok je potrebn\u00fd syst\u00e9m na v\u00fdmenu spr\u00e1v (\u013eubovo\u013en\u00fd instant messenger), pou\u017eili bota na nieko\u013ek\u00fdch IRC kan\u00e1loch a v\u00fdsledky merania vznikali v priebehu 74 dn\u00ed. V pr\u00edpade, \u017ee si medzi sebou \u013eudia vymie\u0148ali URL, ktor\u00fa bot zamenil, 76.1% z nich ju aj odkliklo.<\/p>\n<p>V\u0161etky preposlan\u00e9 spr\u00e1vy okrem \u00favodnej poch\u00e1dzaj\u00fa od \u013eud\u00ed, \u010do rob\u00ed bota \u00faplne nen\u00e1padn\u00fdm a ve\u013emi ta\u017eko odhalite\u013en\u00fdm. Rovnako nikdy nekontaktuje pou\u017e\u00edvate\u013eov s administr\u00e1torsk\u00fdmi pr\u00e1vami a disponuje algoritmom, pomocou ktor\u00e9ho si dok\u00e1\u017ee prisp\u00f4sobi\u0165 vety v z\u00e1vislosti od pohlavia.<\/p>\n<p>V\u00fdskum prebiehal aj na soci\u00e1lnej sieti Facebook, kde m\u00f4\u017ee re\u00e1lny \u00fato\u010dn\u00edk profily &#8222;naklonova\u0165&#8220;, tj vytvori\u0165 identick\u00fd falo\u0161n\u00fd profil. Po\u010das experimentu bolo 5 konverz\u00e1ci\u00ed \u00faspe\u0161ne naviazan\u00fdch s priemerom 4.8 prijat\u00fdch spr\u00e1v od jedn\u00e9ho pou\u017e\u00edvate\u013ea a 4 z 10 \u013eudi odkliklo TinyURL odkaz.<\/p>\n<p>Odhali\u0165 HoneyBot-a je pod\u013ea v\u00fdskumn\u00edkov pre priemern\u00fdch pou\u017e\u00edvate\u013eov na niektor\u00fdch sietiach takmer nemo\u017en\u00e9 a \u00fato\u010dn\u00edk pod\u013ea nich dok\u00e1\u017ee zabr\u00e1ni\u0165 \u00faspe\u0161nosti akejko\u013evek heuristiky.<\/p>\n<p>zdroj: <a href=\"http:\/\/seclab.tuwien.ac.at\/papers\/autosoc-leet2010.pdf\">http:\/\/seclab.tuwien.ac.at\/papers\/autosoc-leet2010.pdf<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Predstavme si be\u017en\u00fa situ\u00e1ciu, pri ktorej chceme demon\u0161trova\u0165 \u00fatok pre konkr\u00e9tnu soci\u00e1lnu sie\u0165. Na\u0161im cie\u013eom bude napadn\u00fat \u010do najv\u00e4\u010d\u0161\u00ed po\u010det pou\u017e\u00edvate\u013eov, naj\u010dastej\u0161\u00ed pr\u00edklad je rozposielanie spamu alebo vyu\u017eitie nejakej XSS zranite\u013enosti na kontrolu \u00fa\u010dtov obet\u00ed. M\u00f4\u017eeme si k tomu pripravi\u0165 URL so \u0161kodliv\u00fdm k\u00f3dom. Jednou z nepochybne zauj\u00edmav\u00fdch mo\u017enost\u00ed je pou\u017ei\u0165 bota a automatizova\u0165 samotn\u00e9 [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[12],"tags":[324,241,204,83],"class_list":["post-1096","post","type-post","status-publish","format-standard","hentry","category-uncategorized-cs","tag-bot-irc-cs","tag-facebook-cs","tag-mitm-cs","tag-nethemba-cs"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.3 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>HoneyBot - Nethemba<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/nethemba.com\/cs\/honeybot\/\" \/>\n<meta property=\"og:locale\" content=\"cs_CZ\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"HoneyBot - Nethemba\" \/>\n<meta property=\"og:description\" content=\"Predstavme si be\u017en\u00fa situ\u00e1ciu, pri ktorej chceme demon\u0161trova\u0165 \u00fatok pre konkr\u00e9tnu soci\u00e1lnu sie\u0165. Na\u0161im cie\u013eom bude napadn\u00fat \u010do najv\u00e4\u010d\u0161\u00ed po\u010det pou\u017e\u00edvate\u013eov, naj\u010dastej\u0161\u00ed pr\u00edklad je rozposielanie spamu alebo vyu\u017eitie nejakej XSS zranite\u013enosti na kontrolu \u00fa\u010dtov obet\u00ed. M\u00f4\u017eeme si k tomu pripravi\u0165 URL so \u0161kodliv\u00fdm k\u00f3dom. Jednou z nepochybne zauj\u00edmav\u00fdch mo\u017enost\u00ed je pou\u017ei\u0165 bota a automatizova\u0165 samotn\u00e9 [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/nethemba.com\/cs\/honeybot\/\" \/>\n<meta property=\"og:site_name\" content=\"Nethemba\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/nethemba\" \/>\n<meta property=\"article:published_time\" content=\"2010-06-16T09:08:14+00:00\" \/>\n<meta name=\"author\" content=\"Pavol Lupt\u00e1k\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@nethemba\" \/>\n<meta name=\"twitter:site\" content=\"@nethemba\" \/>\n<meta name=\"twitter:label1\" content=\"Napsal(a)\" \/>\n\t<meta name=\"twitter:data1\" content=\"Pavol Lupt\u00e1k\" \/>\n\t<meta name=\"twitter:label2\" content=\"Odhadovan\u00e1 doba \u010dten\u00ed\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minuty\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/nethemba.com\\\/cs\\\/honeybot\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/nethemba.com\\\/cs\\\/honeybot\\\/\"},\"author\":{\"name\":\"Pavol Lupt\u00e1k\",\"@id\":\"https:\\\/\\\/nethemba.com\\\/de\\\/#\\\/schema\\\/person\\\/5f4ba68c8e1a2013d30e0804245b8234\"},\"headline\":\"HoneyBot\",\"datePublished\":\"2010-06-16T09:08:14+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/nethemba.com\\\/cs\\\/honeybot\\\/\"},\"wordCount\":439,\"commentCount\":0,\"keywords\":[\"bot irc\",\"facebook\",\"mitm\",\"nethemba\"],\"articleSection\":[\"Uncategorized @cs\"],\"inLanguage\":\"cs\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/nethemba.com\\\/cs\\\/honeybot\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/nethemba.com\\\/cs\\\/honeybot\\\/\",\"url\":\"https:\\\/\\\/nethemba.com\\\/cs\\\/honeybot\\\/\",\"name\":\"HoneyBot - Nethemba\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/nethemba.com\\\/de\\\/#website\"},\"datePublished\":\"2010-06-16T09:08:14+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/nethemba.com\\\/de\\\/#\\\/schema\\\/person\\\/5f4ba68c8e1a2013d30e0804245b8234\"},\"breadcrumb\":{\"@id\":\"https:\\\/\\\/nethemba.com\\\/cs\\\/honeybot\\\/#breadcrumb\"},\"inLanguage\":\"cs\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/nethemba.com\\\/cs\\\/honeybot\\\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/nethemba.com\\\/cs\\\/honeybot\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/nethemba.com\\\/cs\\\/home-new-2025\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"HoneyBot\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/nethemba.com\\\/de\\\/#website\",\"url\":\"https:\\\/\\\/nethemba.com\\\/de\\\/\",\"name\":\"Nethemba\",\"description\":\"We care about your security\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/nethemba.com\\\/de\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"cs\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/nethemba.com\\\/de\\\/#\\\/schema\\\/person\\\/5f4ba68c8e1a2013d30e0804245b8234\",\"name\":\"Pavol Lupt\u00e1k\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"cs\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/978b23022518d076eaa243b375d2e0272af4f00dd502ce79cc357276d9bc2495?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/978b23022518d076eaa243b375d2e0272af4f00dd502ce79cc357276d9bc2495?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/978b23022518d076eaa243b375d2e0272af4f00dd502ce79cc357276d9bc2495?s=96&d=mm&r=g\",\"caption\":\"Pavol Lupt\u00e1k\"},\"sameAs\":[\"https:\\\/\\\/www.nethemba.com\\\/\"],\"url\":\"https:\\\/\\\/nethemba.com\\\/cs\\\/author\\\/nethemba-admin\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"HoneyBot - Nethemba","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/nethemba.com\/cs\/honeybot\/","og_locale":"cs_CZ","og_type":"article","og_title":"HoneyBot - Nethemba","og_description":"Predstavme si be\u017en\u00fa situ\u00e1ciu, pri ktorej chceme demon\u0161trova\u0165 \u00fatok pre konkr\u00e9tnu soci\u00e1lnu sie\u0165. Na\u0161im cie\u013eom bude napadn\u00fat \u010do najv\u00e4\u010d\u0161\u00ed po\u010det pou\u017e\u00edvate\u013eov, naj\u010dastej\u0161\u00ed pr\u00edklad je rozposielanie spamu alebo vyu\u017eitie nejakej XSS zranite\u013enosti na kontrolu \u00fa\u010dtov obet\u00ed. M\u00f4\u017eeme si k tomu pripravi\u0165 URL so \u0161kodliv\u00fdm k\u00f3dom. Jednou z nepochybne zauj\u00edmav\u00fdch mo\u017enost\u00ed je pou\u017ei\u0165 bota a automatizova\u0165 samotn\u00e9 [&hellip;]","og_url":"https:\/\/nethemba.com\/cs\/honeybot\/","og_site_name":"Nethemba","article_publisher":"https:\/\/www.facebook.com\/nethemba","article_published_time":"2010-06-16T09:08:14+00:00","author":"Pavol Lupt\u00e1k","twitter_card":"summary_large_image","twitter_creator":"@nethemba","twitter_site":"@nethemba","twitter_misc":{"Napsal(a)":"Pavol Lupt\u00e1k","Odhadovan\u00e1 doba \u010dten\u00ed":"2 minuty"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/nethemba.com\/cs\/honeybot\/#article","isPartOf":{"@id":"https:\/\/nethemba.com\/cs\/honeybot\/"},"author":{"name":"Pavol Lupt\u00e1k","@id":"https:\/\/nethemba.com\/de\/#\/schema\/person\/5f4ba68c8e1a2013d30e0804245b8234"},"headline":"HoneyBot","datePublished":"2010-06-16T09:08:14+00:00","mainEntityOfPage":{"@id":"https:\/\/nethemba.com\/cs\/honeybot\/"},"wordCount":439,"commentCount":0,"keywords":["bot irc","facebook","mitm","nethemba"],"articleSection":["Uncategorized @cs"],"inLanguage":"cs","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/nethemba.com\/cs\/honeybot\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/nethemba.com\/cs\/honeybot\/","url":"https:\/\/nethemba.com\/cs\/honeybot\/","name":"HoneyBot - Nethemba","isPartOf":{"@id":"https:\/\/nethemba.com\/de\/#website"},"datePublished":"2010-06-16T09:08:14+00:00","author":{"@id":"https:\/\/nethemba.com\/de\/#\/schema\/person\/5f4ba68c8e1a2013d30e0804245b8234"},"breadcrumb":{"@id":"https:\/\/nethemba.com\/cs\/honeybot\/#breadcrumb"},"inLanguage":"cs","potentialAction":[{"@type":"ReadAction","target":["https:\/\/nethemba.com\/cs\/honeybot\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/nethemba.com\/cs\/honeybot\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/nethemba.com\/cs\/home-new-2025\/"},{"@type":"ListItem","position":2,"name":"HoneyBot"}]},{"@type":"WebSite","@id":"https:\/\/nethemba.com\/de\/#website","url":"https:\/\/nethemba.com\/de\/","name":"Nethemba","description":"We care about your security","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/nethemba.com\/de\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"cs"},{"@type":"Person","@id":"https:\/\/nethemba.com\/de\/#\/schema\/person\/5f4ba68c8e1a2013d30e0804245b8234","name":"Pavol Lupt\u00e1k","image":{"@type":"ImageObject","inLanguage":"cs","@id":"https:\/\/secure.gravatar.com\/avatar\/978b23022518d076eaa243b375d2e0272af4f00dd502ce79cc357276d9bc2495?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/978b23022518d076eaa243b375d2e0272af4f00dd502ce79cc357276d9bc2495?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/978b23022518d076eaa243b375d2e0272af4f00dd502ce79cc357276d9bc2495?s=96&d=mm&r=g","caption":"Pavol Lupt\u00e1k"},"sameAs":["https:\/\/www.nethemba.com\/"],"url":"https:\/\/nethemba.com\/cs\/author\/nethemba-admin\/"}]}},"_links":{"self":[{"href":"https:\/\/nethemba.com\/cs\/wp-json\/wp\/v2\/posts\/1096","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/nethemba.com\/cs\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/nethemba.com\/cs\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/nethemba.com\/cs\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/nethemba.com\/cs\/wp-json\/wp\/v2\/comments?post=1096"}],"version-history":[{"count":0,"href":"https:\/\/nethemba.com\/cs\/wp-json\/wp\/v2\/posts\/1096\/revisions"}],"wp:attachment":[{"href":"https:\/\/nethemba.com\/cs\/wp-json\/wp\/v2\/media?parent=1096"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/nethemba.com\/cs\/wp-json\/wp\/v2\/categories?post=1096"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/nethemba.com\/cs\/wp-json\/wp\/v2\/tags?post=1096"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}