Publishing Service

Polishing & Checking

Frontiers of Information Technology & Electronic Engineering

ISSN 2095-9184 (print), ISSN 2095-9230 (online)

Detecting compromised accounts caused by phone number recycling on e-commerce platforms: taking Meituan as an example

Abstract: Phone number recycling (PNR) refers to the event wherein a mobile operator collects a disconnected number and reassigns it to a new owner. It has posed a threat to the reliability of the existing authentication solution for e-commerce platforms. Specifically, a new owner of a reassigned number can access the application account with which the number is associated, and may perform fraudulent activities. Existing solutions that employ a reassigned number database from mobile operators are costly for e-commerce platforms with large-scale users. Thus, alternative solutions that depend on only the information of the applications are imperative. In this work, we study the problem of detecting accounts that have been compromised owing to the reassignment of phone numbers. Our analysis on Meituan’s real-world dataset shows that compromised accounts have unique statistical features and temporal patterns. Based on the observations, we propose a novel model called temporal pattern and statistical feature fusion model (TSF) to tackle the problem, which integrates a temporal pattern encoder and a statistical feature encoder to capture behavioral evolutionary interaction and significant operation features. Extensive experiments on the Meituan and IEEE-CIS datasets show that TSF significantly outperforms the baselines, demonstrating its effectiveness in detecting compromised accounts due to reassigned numbers.

Key words: Phone number recycling; Neural networks; E-commerce; Compromised account detection

Chinese Summary  <24> 电子商务平台"二次放号"被盗账号检测研究:以美团为例

高敏1,2,陈疏桐1,2,高洋波3,张振华3,陈彧3,李钰鹏4
叶琼赞1,2,王新1,2,陈阳1,2
1复旦大学计算机科学技术学院,中国上海市,200438
2上海市智能信息处理重点实验室(复旦大学),中国上海市,200438
3美团,中国北京市,100005
4香港浸会大学互动媒体系,中国香港特别行政区,999077
摘要:"二次放号"是指移动运营商回收已停机手机的号码并将其重新分配给新号主的行为。这种操作方式对电子商务平台现有身份验证解决方案的可靠性构成了威胁。具体而言,重新分配号码的新号主可以使用该号码之前已绑定的应用程序账户,并可能基于此开展欺诈活动。对于拥有庞大用户群体的电子商务平台而言,现有的基于移动运营商重新分配号码数据库的解决方案成本高昂。因此,我们迫切需要一种只依赖应用程序信息的解决方案。本文深入探究了因二次放号引发的被盗账号检测问题。基于对美团真实数据集的分析发现,被盗账户具有独特的统计特征和时序模式。基于这些观察结果,我们提出一种时序模式与统计特征融合模型(TSF)。该模型分别设计了时序模式编码器和统计特征编码器,旨在捕获能够有效区分正常账号和异常账号的时序演化模式和关键行为特征。在美团数据集和IEEE-CIS数据集上进行的大量实验表明,TSF的性能明显优于其它基线模型,进一步验证了所提模型的有效性。

关键词组:二次放号;神经网络;电子商务;被盗账号检测


Share this article to: More

Go to Contents

References:

<Show All>

Open peer comments: Debate/Discuss/Question/Opinion

<1>

Please provide your name, email address and a comment





DOI:

10.1631/FITEE.2300291

CLC number:

TP391

Download Full Text:

Click Here

Downloaded:

1538

Download summary:

<Click Here> 

Downloaded:

238

Clicked:

1640

Cited:

0

On-line Access:

2024-08-27

Received:

2023-10-17

Revision Accepted:

2024-05-08

Crosschecked:

2023-10-18

Journal of Zhejiang University-SCIENCE, 38 Zheda Road, Hangzhou 310027, China
Tel: +86-571-87952276; Fax: +86-571-87952331; E-mail: jzus@zju.edu.cn
Copyright © 2000~ Journal of Zhejiang University-SCIENCE