PDF Mirage: Content Masking Attack Against Information-Based Online Services
Ian D. Markwood, Dakun Shen, Yao Liu, Zhuo Lu
摘要
We present a new class of content masking attacks against the Adobe PDF standard, causing documents to appear to humans dissimilar to the underlying content extracted by information-based services. We show three attack variants with notable impact on real-world systems. Our first attack allows academic paper writers and reviewers to collude via subverting the automatic reviewer assignment systems in current use by academic conferences including INFOCOM, which we reproduced. Our second attack renders ineffective plagiarism detection software, particularly Turnitin, targeting specific small plagiarism similarity scores to appear natural and evade detection. In our final attack, we place masked content into the indexes for Bing, Yahoo!, and DuckDuckGo which renders as information entirely different from the keywords used to locate it, enabling spam, profane, or possibly illegal content to go unnoticed by these search engines but still returned in unrelated search results. Lastly, as these systems eschew optical character recognition (OCR) for its overhead, we offer a comprehensive and lightweight alternative mitigation method.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
引用它的顶会 Paper7
- Seeing is Not Believing: Camouflage Attacks on Image Scaling AlgorithmsQixue Xiao, Yufei Chen, Chao Shen, Yu Chen 等USENIX Security 2019 · 被引用 103 次
- 1 Trillion Dollar Refund: How To Spoof PDF SignaturesVladislav Mladenov, Christian Mainka, Karsten Meyer zu Selhausen, Martin Grothe 等CCS 2019 · 被引用 23 次
- Vulnerability of Text-Matching in ML/AI Conference Reviewer Assignments to CollusionsJhih-Yi Hsieh, Aditi Raghunathan, Nihar B. ShahUSENIX Security 2025
- Processing Dangerous Paths - On Security and Privacy of the Portable Document FormatJens Müller, Dominik Noss, Christian Mainka, Vladislav Mladenov 等NDSS 2021
- No more Reviewer #2: Subverting Automatic Paper-Reviewer Assignment using Adversarial LearningThorsten Eisenhofer, Erwin Quiring, Jonas Möller, Doreen Riepel 等USENIX Security 2023
它引用的顶会 Paper1
相关 Paper
- ProTegO: Protect Text Content against OCR Extraction AttackYanru He, Kejiang Chen, Guoqiang Chen, Zehua Ma 等ACM MM 2023 · 被引用 7 次
- A Multifaceted Framework to Evaluate Evasion, Content Preservation, and Misattribution in Authorship Obfuscation TechniquesMalik H. Altakrori, Thomas Scialom, Benjamin C. M. Fung, Jackie Chi Kit CheungEMNLP 2022 · 被引用 2 次
- Extract Me If You Can: Abusing PDF Parsers in Malware DetectorsCurtis Carmony, Xunchao Hu, Heng Yin, Abhishek Vasisht Bhaskar 等NDSS 2016 · 被引用 61 次
- Universal Defensive Underpainting Patch: Making Your Text Invisible to Optical Character RecognitionJiacheng Deng, Li Dong, Jiahao Chen, Diqun Yan 等ACM MM 2023 · 被引用 5 次
- Detecting Automatic Software Plagiarism via Token Sequence NormalizationTimur Saglam, Moritz Brödel, Larissa Schmid, Sebastian HahnerICSE 2024 · 被引用 6 次
