43 citations · 45 across the 3 of their papers we have counts for
3 papers
cs.CR2021★ 2 cited
Hopper: Modeling and Detecting Lateral Movement (Extended Report)
Grant Ho, Mayank Dhiman, Devdatta Akhawe +4
In successful enterprise attacks, adversaries often need to gain access to additional machines beyond their initial point of compromise, a set of internal movements known as latera…
cs.CR2020
A Large-Scale Analysis of Attacker Activity in Compromised Enterprise Accounts
Neil Shah, Grant Ho, Marco Schweighauser +3
We present a large-scale characterization of attacker activity across 111 real-world enterprise organizations. We develop a novel forensic technique for distinguishing between atta…
cs.CR2019★ 43 cited
Detecting and Characterizing Lateral Phishing at Scale
Grant Ho, Asaf Cidon, Lior Gavish +5
We present the first large-scale characterization of lateral phishing attacks, based on a dataset of 113 million employee-sent emails from 92 enterprise organizations. In a lateral…