MAWSEO: Adversarial Wiki Search Poisoning for Illicit Online Promotion
Zilong Lin, Zhengyi Li, Xiaojing Liao, XiaoFeng Wang, Xiaozhong Liu
IEEE Symposium on Security and Privacy 2024 · Day 1 · Continental Ballroom 5
In an era where online visibility translates directly to profit, the landscape of illicit online promotion has grown increasingly sophisticated. The talk "MAWSEO: Adversarial Wiki Search Poisoning for Illicit Online Promotion," presented at IEEE S&P, unveils a novel and highly effective attack framework designed to exploit the very systems intended to provide trustworthy information: Wiki platforms. This research, led by Zilong Lin and his collaborators, introduces **MAWSEO** (Multitask Adversarial Wiki Search Engine Optimization), a system capable of stealthily injecting promotional content for illicit businesses—such as online pharmacies or casinos—into Wiki articles, subsequently boosting their visibility in Wiki search results while simultaneously evading advanced vandalism detection mechanisms and user scrutiny.
AI review
This research unveils MAWSEO, a genuinely novel and highly effective framework for multi-objective adversarial Wiki search poisoning. It demonstrates sophisticated blackbox evasion and rank boosting, with an estimated $110M monthly revenue potential for illicit actors. The technical depth of both the attack and the proposed coherence detection defense is exceptional.