Agent-based honeynet framework for protecting servers in campus networks

被引:7
|
作者
Kim, I. S. [1 ]
Kim, M. H. [1 ]
机构
[1] Soongsil Univ, Sch Comp Sci & Engn, Seoul 156743, South Korea
关键词
D O I
10.1049/iet-ifs.2011.0154
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Intrusion detection systems (IDSs) and intrusion prevention systems (IPSs) that use signatures cannot protect servers from new types of internet worms. Therefore it is important to collect information about new attacks because the detection rules employed by IDSs and IPSs are formulated using this information. Honeypots are valuable security resources that act as baits for attackers. They can monitor intrusions by being probed, attacked or compromised and can detect zero-day attacks and provide researchers intending to improve security with information about the attacks. However, it is almost impossible to immediately generate detection rules from the information collected by honeypots. This study presents an agent-based honeynet framework for protecting servers in a campus network. In this framework, agents remove malicious processes and executable files on servers infected by zero-day attacks as soon as the honeynet detects them. The proposed framework provides a novel defense mechanism that protects servers from new types of internet worms effectively, without the use of signatures.
引用
收藏
页码:202 / 211
页数:10
相关论文
共 50 条
  • [1] A mobile agent-based framework for configurable sensor networks
    Umezawa, T
    Satoh, I
    Anzai, Y
    [J]. MOBILE AGENTS FOR TELECOMMUNICATION APPLICATIONS, PROCEEDINGS, 2002, 2521 : 128 - 139
  • [2] An agent-based clustering framework for reliable satellite networks
    Geng, Sunyue
    Liu, Sifeng
    Fang, Zhigeng
    Gao, Su
    [J]. RELIABILITY ENGINEERING & SYSTEM SAFETY, 2021, 212
  • [3] An agent-based framework for production software defined networks
    Izard, Ryan
    Deng, Juan
    Wang, Qing
    Xu, Ke
    Wang, Kuang-Ching
    [J]. INTERNATIONAL JOURNAL OF COMMUNICATION NETWORKS AND DISTRIBUTED SYSTEMS, 2016, 17 (03) : 254 - 274
  • [4] An Agent-Based Security Framework for Cooperative Business Networks
    Cunha, Carlos R.
    Gomes, Joao Pedro
    Morais, Elisabete Paulo
    [J]. ENTREPRENEURSHIP VISION 2020: INNOVATION, DEVELOPMENT SUSTAINABILITY, AND ECONOMIC GROWTH, VOLS 1 AND 2, 2013, : 902 - 907
  • [5] Agent-based transactions on distributed object servers
    Shiraishi, M
    Enokido, T
    Takizawa, M
    [J]. 2003 INTERNATIONAL CONFERENCE ON COMPUTER NETWORKS AND MOBILE COMPUTING, PROCEEDINGS, 2003, : 174 - 180
  • [6] Replacing Rules by Neural Networks A Framework for Agent-Based Modelling
    Jaeger, Georg
    [J]. BIG DATA AND COGNITIVE COMPUTING, 2019, 3 (04) : 1 - 12
  • [7] A Framework for Agent-based Intrusion Detection in Wireless Sensor Networks
    Pires, Higo
    Abdelouahab, Zair
    Lopes, Denivaldo
    Santos, Mario
    [J]. PROCEEDINGS OF THE SECOND INTERNATIONAL CONFERENCE ON INTERNET OF THINGS, DATA AND CLOUD COMPUTING (ICC 2017), 2017,
  • [8] Using Neural Networks for a Universal Framework for Agent-based Models
    Jaeger, Georg
    [J]. MATHEMATICAL AND COMPUTER MODELLING OF DYNAMICAL SYSTEMS, 2021, 27 (01) : 162 - 178
  • [9] An agent-based modeling framework for cybersecurity in mobile tactical networks
    Thompson, Brian
    Morris-King, James
    [J]. JOURNAL OF DEFENSE MODELING AND SIMULATION-APPLICATIONS METHODOLOGY TECHNOLOGY-JDMS, 2018, 15 (02): : 204 - 218
  • [10] An agent-based compositional framework
    Anane, R
    Li, Y
    Tsai, CF
    Chao, KM
    Younas, M
    [J]. WEB TECHNOLOGIES RESEARCH AND DEVELOPMENT - APWEB 2005, 2005, 3399 : 579 - 584