Design and Implementation of Dynamic Hybrid Virtual Honeypot Architecture for Attack Analysis
Design and Implementation of Dynamic Hybrid Virtual Honeypot Architecture for Attack Analysis
Blog Article
Honeypots are dedicated machines whose aim is to delay and divert attackers away from critical resources in order to study new methods and tools used by attackers.However, when looking most of current honeypot systems are statically configured and managed.They are either low interaction honeypot or high interaction honeypot.On this paper, we ghost dolphin shorts proposed Dynamic Hybrid Virtual Honeypots Architecture in a single machine.
It is capable of adapting in constantly changing network environment using both active and passive scanning.It also mitigates the drawback of low and high interaction honeypots.We use low interaction honeypots as proxy to claim for multiple IP address and to filter uninteresting traffic whereas high interaction honeypots to give optimal marvos t coils level of realism.To capture, analyze and control attack method and tools we used a gateway.
Finally, we deploy the proposed architecture and present statically analysis of attacks.The experiment result proves this architecture can claim for multiple IP address, filter uninteresting traffic and gives a realism response for attacker.