SECURING DISTRIBUTED COMPUTER SYSTEMS USING AN ADVANCED SOPHISTICATED HYBRID HONEYPOT TECHNOLOGY

被引:12
|
作者
Chovancova, Eva [1 ]
Adam, Norbert [1 ]
Balaz, Anton [1 ]
Pietrikova, Emilia [1 ]
Fecilak, Peter [2 ]
Simonak, Slavomir [2 ]
Chovanec, Martin [3 ]
机构
[1] Tech Univ Kosice, Dept Comp & Informat, Pk Komenskeho 6, Kosice 04200, Slovakia
[2] Tech Univ Kosice, Dept Comp & Informat, Letna 9, Kosice 04200, Slovakia
[3] Tech Univ Kosice, Inst Comp Technol, B Nemcovej 3, Kosice 04200, Slovakia
关键词
Honeypot; hybrid honeypot; virtual honeypots; malicious code; security of computer systems;
D O I
10.4149/cai_2017_1_113
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Computer system security is the fastest developing segment in information technology. The conventional approach to system security is mostly aimed at protecting the system, while current trends are focusing on more aggressive forms of protection against potential attackers and intruders. One of the forms of protection is also the application of advanced technology based on the principle of baits-honeypots. Honeypots are specialized devices aimed at slowing down or diverting the attention of attackers from the critical system resources to allow future examination of the methods and tools used by the attackers. Currently, most honeypots are being configured and managed statically. This paper deals with the design of a sophisticated hybrid honeypot and its properties having in mind enhancing computer system security. The architecture of a sophisticated hybrid honeypot is represented by a single device capable of adapting to a constantly changing environment by using active and passive scanning techniques, which mitigate the disadvantages of low interaction and high-interaction honeypots. The low-interaction honeypot serves as a proxy for multiple IP addresses and filters out traffic beyond concern, while the high-interaction honeypot provides an optimum level of interaction. The proposed architecture employing the prototype of a hybrid honeypot featuring autonomous operation should represent a security mechanism minimizing the disadvantages of intrusion detection systems and can be used as a solution to increase the security of a distributed computer system rapidly, both autonomously and in real-time.
引用
收藏
页码:113 / 139
页数:27
相关论文
共 50 条
  • [1] Autonomous Hybrid Honeypot as the Future of Distributed Computer Systems Security
    Fanfara, Peter
    Dufala, Marek
    Radusovsky, Jan
    [J]. ACTA POLYTECHNICA HUNGARICA, 2013, 10 (06) : 25 - 42
  • [2] Sophisticated Honeypot Mechanism - the Autonomous Hybrid Solution for Enhancing Computer System Security
    Vokorokos, Liberios
    Fanfara, Peter
    Radusovsky, Jan
    Poor, Peter
    [J]. IEEE 11TH INTERNATIONAL SYMPOSIUM ON APPLIED MACHINE INTELLIGENCE AND INFORMATICS (SAMI 2013), 2013, : 41 - 46
  • [3] Usage of Proposed Autonomous Hybrid Honeypot for Distributed Heterogeneous Computer Systems in Education Process
    Fanfara, P.
    Dufala, M.
    Chovancova, E.
    [J]. 2013 11TH IEEE INTERNATIONAL CONFERENCE ON EMERGING ELEARNING TECHNOLOGIES AND APPLICATIONS (ICETA 2013), 2013, : 83 - 88
  • [4] Distributed and Highly-Scalable WAN Network Attack Sensing and Sophisticated Analysing Framework based on Honeypot Technology
    Fraunholz, Daniel
    Zimmermann, Marc
    Anton, Simon Duque
    Schneider, Joerg
    Schotten, Hans Dieter
    [J]. PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING, DATA SCIENCE AND ENGINEERING (CONFLUENCE 2017), 2017, : 416 - 421
  • [5] Securing distributed systems using patterns: A survey
    Uzunov, Anton V.
    Fernandez, Eduardo B.
    Falkner, Katrina
    [J]. COMPUTERS & SECURITY, 2012, 31 (05) : 681 - 703
  • [6] Web technology advanced process computer systems
    [J]. R and D Kobe Steel Eng Reps, 2006, 1 (8-13):
  • [7] Using expert systems to manage distributed computer systems
    Pasquale, Joseph
    [J]. IEEE Network, 1988, 2 (05): : 22 - 28
  • [8] Advanced service creation using distributed object technology
    Adamopoulos, DX
    Pavlou, G
    Papandreou, CA
    [J]. IEEE COMMUNICATIONS MAGAZINE, 2002, 40 (03) : 146 - 154
  • [9] Advanced design of broadband distributed amplifier using a SiGeBiCMOS technology
    Lee, GA
    Ko, H
    De Flaviis, F
    [J]. 2003 IEEE MTT-S INTERNATIONAL MICROWAVE SYMPOSIUM DIGEST, VOLS 1-3, 2003, : A189 - A192
  • [10] Advanced design of broadband distributed amplifier using a SiGeBiCMOS technology
    Lee, GA
    Ko, HS
    De Flaviis, F
    [J]. 2003 IEEE RADIO FREQUENCY INTEGRATED CIRCUITS (RFIC) SYMPOSIUM, DIGEST OF PAPERS, 2003, : 703 - 706