Title
Design of active HoneyPot system
Abstract
According to rapid growth of Internet infrastructure and information technology, anyone can get knowledge legally or illegally. Internet users can be classified as normal and abnormal user. Especially, abnormal users with hostility are getting more intelligent, so they can drain away the valuable information and use or destroy it illeglly. The damage from abnormal user is also increasing, but research to detect abnormal users and to protect information is at still initial stage. The most security systems focus on how to detect and respond such an intrusion as quickly as possible of which they already have knowledge. In case of unknown intrusion, it is much harder to detect and respond it. In this paper, we implement a virtual emulation service that leads an intruder into HoneyPot, which monitors all behaviors in step by step. Building the new knowledge on the access paths and skills of intruder allows us to make a policy to protect a system from new attacks. Furthermore, we present an Active HoneyPot System, which combined with firewall and management server. In this system, firewall redirects an abnormal user to HoneyPot to learn advanced intruding skills and to respond more actively.
Year
DOI
Venue
2003
10.1007/3-540-44843-8_38
ICCSA
Keywords
Field
DocType
abnormal user,new attack,information technology,active honeypot system,security system,new knowledge,internet user,firewall redirects,internet infrastructure,valuable information
Honeypot,Internet privacy,Intrusion,Firewall (construction),Computer science,Information technology,Computer security,Computer network,Emulation,Pseudoserver,The Internet
Conference
Volume
ISSN
ISBN
2668
0302-9743
3-540-40161-X
Citations 
PageRank 
References 
0
0.34
1
Authors
4
Name
Order
Citations
PageRank
Miyoung Kim183.49
Misun Kim2184.21
Hyewon K. Lee322.78
Youngsong Mun42281437.86