论文标题
研究伦理和建立基准的调查
Investigation on Research Ethics and Building a Benchmark
论文作者
论文摘要
在处理领先的网络安全研究时,尤其是从攻击者或红色团队的角度进行操作时,有时必须考虑道德如何发挥作用。目前没有网络安全特定的道德标准,这尤其是日本落后于对抗性网络安全研究的原因之一。在这项研究中,使用机器学习和手动方法,我们从过去的会议论文中提取了研究道德的最佳实践。使用这些知识,我们为网络安全研究构建了道德知识基础。这样的知识基础可用于正确区分灰色地区的研究,以免被错误地禁止。使用我们为知识库创建的决策树式用户界面,研究人员可能能够有效地确定其研究的哪些方面需要道德考虑。在这项工作中,作为初步步骤,我们仅关注网络安全会议所涵盖的一部分研究领域,但我们的结果适用于任何研究领域。
When dealing with leading edge cyber security research, especially when operating from the perspective of an attacker or a red team, it becomes necessary for one to at times consider how ethics comes into play. There are currently no cyber security-specific ethics standards, which in particular is one reason more adversarial cyber security research lags behind in Japan. In this research, using machine learning and manual methods we extracted best practices for research ethics from past top conference papers. Using this knowledge we constructed an ethics knowledge base for cyber security research. Such a knowledge base can be used to properly distinguish grey-area research so that it is not wrongly forbidden. Using a decision tree-style user interface that we created for our knowledge base, researchers may be able to efficiently identify which aspects of their research require ethical consideration. In this work, as a preliminary step we focused on only a portion of the areas of research covered by cyber security conferences, but our results are applicable to any area of research.