Towards a Cognitive Theory of Cyber Deception

Cognitive Science 45 (7):e13013 (2021)
  Copy   BIBTEX

Abstract

This work is an initial step toward developing a cognitive theory of cyber deception. While widely studied, the psychology of deception has largely focused on physical cues of deception. Given that present‐day communication among humans is largely electronic, we focus on the cyber domain where physical cues are unavailable and for which there is less psychological research. To improve cyber defense, researchers have used signaling theory to extended algorithms developed for the optimal allocation of limited defense resources by using deceptive signals to trick the human mind. However, the algorithms are designed to protect against adversaries that make perfectly rational decisions. In behavioral experiments using an abstract cybersecurity game (i.e., Insider Attack Game), we examined human decision‐making when paired against the defense algorithm. We developed an instance‐based learning (IBL) model of an attacker using the Adaptive Control of Thought‐Rational (ACT‐R) cognitive architecture to investigate how humans make decisions under deception in cyber‐attack scenarios. Our results show that the defense algorithm is more effective at reducing the probability of attack and protecting assets when using deceptive signaling, compared to no signaling, but is less effective than predicted against a perfectly rational adversary. Also, the IBL model replicates human attack decisions accurately. The IBL model shows how human decisions arise from experience, and how memory retrieval dynamics can give rise to cognitive biases, such as confirmation bias. The implications of these findings are discussed in the perspective of informing theories of deception and designing more effective signaling schemes that consider human bounded rationality.

Links

PhilArchive



    Upload a copy of this work     Papers currently archived: 93,031

External links

Setup an account with your affiliations in order to access resources via your University's proxy server

Through your library

Similar books and articles

A dynamical model of risky choice.Marieke M. J. W. van Rooij, Luis H. Favela, MaryLauren Malone & Michael J. Richardson - 2013 - Proceedings of the 35th Annual Conference of the Cognitive Science Society 35:1510-1515.

Analytics

Added to PP
2021-07-03

Downloads
16 (#934,417)

6 months
11 (#271,985)

Historical graph of downloads
How can I increase my downloads?

Author's Profile

C. L. Gonzalez
Saint Louis University

Citations of this work

No citations found.

Add more citations