International Conference on Computing and Applied Informatics 2016
Enhancing Honeypot Deception Capability Through Network Service Fingerprinting
Dahbul, R.N.^1 ; Lim, C.^1 ; Purnama, J.^1
Department of Information Technology, Swiss German University, Edutown BSD City, Tangerang
15339, Indonesia^1
关键词: Attack patterns;    Computer resources;    Fingerprinting methods;    Honeypots;    Network services;    Potential threats;    Threat modeling;   
Others  :  https://iopscience.iop.org/article/10.1088/1742-6596/801/1/012057/pdf
DOI  :  10.1088/1742-6596/801/1/012057
来源: IOP
【 摘 要 】

Honeypot is designed to lure attackers away from the computer resources the attackers are trying to compromise. In addition, honeypot also tracks attacker's activities and helps researchers learn about their attack patterns. However, honeypot can also be identified by attackers using various fingerprinting methods. In this research, we use threat modeling to identify potential threats that reveal its existence which made honeypot ineffective. Various countermeasures are discussed and the proposed countermeasures have proved effective to enhance the deception capability of the honeypots we tested.

【 预 览 】
Files Size Format View
Enhancing Honeypot Deception Capability Through Network Service Fingerprinting 717KB PDF download
  下载次数:16次 浏览次数:43次