论文标题

测量网络推广广告中的滥用

Measuring Abuse in Web Push Advertising

论文作者

Subramani, Karthika, Yuan, Xingzi, Setayeshfar, Omid, Vadrevu, Phani, Lee, Kyu Hyung, Perdisci, Roberto

论文摘要

在线广告的快速增长推动了广告障碍软件的增长,例如新的广告块和面向隐私的浏览器或浏览器扩展。作为回应,广告出版商和广告网络都在不断尝试采取新的策略来保持收入。为此,广告网络已开始利用现代Web浏览器启用的Web推动技术。 由于Web推送通知(WPN)相对较新,因此尚未深入研究其在广告交付中的作用。此外,尚不清楚WPN广告在多大程度上被滥用以实现恶化(即提供恶意广告)。在本文中,我们旨在填补这一空白。具体而言,我们提出了一个名为PushAdminer的系统,该系统致力于(1)自动注册并收集来自发布者网站的大量基于Web的推送通知,(2)在这些通知中查找基于WPN的广告,以及(3)发现基于恶意的WPN广告活动。 使用PushAdminer,我们通过访问数千个不同的网站来收集并分析了21,541个WPN消息。其中,我们的系统确定了572个WPN广告系列,共有5,143个基于WPN的广告,这些广告被各种广告网络推动。此外,我们发现我们收集的所有WPN广告中有51%都是恶意的,并且传统的广告障碍物和恶意URL过滤器对基于WPN的恶意广告的效率显着无效,因此未经检查的大量滥用向量。

The rapid growth of online advertising has fueled the growth of ad-blocking software, such as new ad-blocking and privacy-oriented browsers or browser extensions. In response, both ad publishers and ad networks are constantly trying to pursue new strategies to keep up their revenues. To this end, ad networks have started to leverage the Web Push technology enabled by modern web browsers. As web push notifications (WPNs) are relatively new, their role in ad delivery has not been yet studied in depth. Furthermore, it is unclear to what extent WPN ads are being abused for malvertising (i.e., to deliver malicious ads). In this paper, we aim to fill this gap. Specifically, we propose a system called PushAdMiner that is dedicated to (1) automatically registering for and collecting a large number of web-based push notifications from publisher websites, (2) finding WPN-based ads among these notifications, and (3) discovering malicious WPN-based ad campaigns. Using PushAdMiner, we collected and analyzed 21,541 WPN messages by visiting thousands of different websites. Among these, our system identified 572 WPN ad campaigns, for a total of 5,143 WPN-based ads that were pushed by a variety of ad networks. Furthermore, we found that 51% of all WPN ads we collected are malicious, and that traditional ad-blockers and malicious URL filters are remarkably ineffective against WPN-based malicious ads, leaving a significant abuse vector unchecked.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源