• Home
  • Search
  • Evaluating Deception Theories for Applicability to Cyber Operations
  • https://doi.org/10.34190/eccws.24.1.3574Copy DOI Icon

Evaluating Deception Theories for Applicability to Cyber Operations

Show More
  • Abstract
  • Literature Map
  • Similar Papers
Abstract

Deception is essential to and inherent in cyber operations of all kinds. In defensive cyber operations, deception is the third line of defence after authentication and access control. Deception can be supported by intrusion detection systems monitoring for suspicious activity. Honeypots are the most obvious technique for misleading intruders, but delaying execution of commands, giving false excuses, and lying about the results may be more effective in some circumstances. Proactive defences also depend on deception. In offensive cyber operations, the attacker may manipulate someone to gain information. He/she may masquerade as an authorised user to access the target system or escalate privileges, install a rootkit to conceal his/her actions, bypass access control by installing a back door, or exfiltrate collected data within normal traffic. There is a wealth of theories of deception, overwhelmingly based on the physical world. Some theories are generic, others are specific to military operations, but few are specific to cyber deception. Some focus on the entities involved, while others focus on the deception process, which itself may be organisational or psychological. Several authors warn that analogies drawn from the physical environment may be counterintuitive in cyberspace. As Miller, Brickey and Conti (2012) memorably express it: “weapons can be reproduced instantly, ‘bullets’ travel at near the speed of light, destroyed targets can be brought back from the dead, and a seventeen year old can command an army”. This warning also applies to deception theory. The purpose of this paper is to evaluate key theories of deception for applicability to cyber operations in a multi-domain environment. There are five chapters. After the Introduction, Chapter 2 summarises relevant theory and doctrine. Chapter 3 summarises seven key theories of deception. Chapter 4 evaluates them, and outlines an ideal theory. Finally, Chapter 5 draws conclusions and recommends further work.

Similar Papers
  • Research Article
  • Citations61

Internal Audit: Is the ‘Third Line of Defense’ Effective as a Form of Governance? An Exploratory Study of the Impression Management Techniques Chief Audit Executives Use in Their Annual Accountability to the Audit Committee

  • Jul 22, 2016
  • Journal of Business Ethics
  • Mélanie Roussy +1
  • PDF
  • Research Article
  • Citations50

Strategies for adaptation to high light in plants

  • May 13, 2024
  • aBIOTECH
  • Man Zhang +3
  • PDF
  • Research Article
  • Citations65

Three Lines of Defense for Wildfire Risk Management in Electric Power Grids: A Review

  • Jan 01, 2021
  • IEEE Access
  • Ali Arab +4
  • Research Article
  • Citations2

Collateral Damage from Offensive Cyber Operations—A Systematic Literature Review

  • Jun 16, 2025
  • Journal of Cybersecurity and Privacy
  • Emil Larsson
  • Research Article

A Sensemaking Framework for Defensive Cyber Operations: Filling the Void in Leadership Discourse

  • Jun 21, 2024
  • European Conference on Cyber Warfare and Security
  • Timothy Shives +1
  • Book Chapter

Vulnerabilities disclosure deeply divides

  • May 25, 2017
  • Emerald expert briefings
  • Book Chapter

Conclusions

  • Aug 01, 2022
  • Daniel Moore
  • Research Article

Prüfrechte der internen Bankkonzernrevision bei grenzüberschreitenden Sachverhalten

  • Jan 01, 2019
  • Zeitschrift für das gesamte Bank- und Börsenwesen
  • Nicolas Raschauer +1
  • Book Chapter

The Third Line of Defence

  • Jul 14, 2017
  • Conference Article

Frequency Emergency Control Strategy based on Power Regulation Capability of Virtual Power Plant

  • Oct 23, 2025
  • Yan Gao +5
  • Conference Article
  • Citations19

P4NIS: Improving network immunity against eavesdropping with programmable data planes

  • Jul 01, 2020
  • Gang Liu +5
  • Conference Article
  • Citations2

Cyber defence information sharing in a federated network

  • Oct 01, 2016
  • H Kantola +1
  • Research Article
  • Citations2

Exploring South Africa’s Cybersecurity Legal Framework regulating Information Confidentiality, Integrity, and Availability

  • Mar 21, 2024
  • International Conference on Cyber Warfare and Security
  • Murdoch Watney
  • PDF
  • Research Article
  • Citations12

Addressing the spectre of cyber terrorism: a comparative perspective

  • Sep 18, 2012
  • Potchefstroom Electronic Law Journal/Potchefstroomse Elektroniese Regsblad
  • F Cassim
  • Research Article
  • Citations9

The Exploitation of Cyber Domain as Part of Warfare: Russo-Ukrainian War

  • Jan 01, 2015
  • International Journal of Cyber-Security and Digital Forensics
  • Jarno Limnéll
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.