White Papers

Security and Results of a Large-Scale High-Interaction Honeypot

Category: Security

Tags: network

Overview This paper presents the design and discusses the results of a secured high-interaction honeypot. The challenge is to have a honeypot that welcomes attackers, allows userland malicious activities but prevents system corruption. The honeypot must authorize real malicious activities. It must ease the analysis of those activities. A clustered honeypot is proposed for two kinds of hosts. The first class prevents a system corruption and never has to be reinstalled. The second class assumes a system corruption but an easy reinstallation is available. Various off-the-shelf security tools are deployed to detect a corruption and to ease analysis. Moreover, host and network information enable a full analysis for complex scenario of attacks.

Download White Paper

By downloading you agree to our Terms and Conditions. These include information regarding use of your personal data.

Publisher
Academy Publisher
File Format
PDF
Date Published
Jun 30, 2009
Format
White Papers
Topics
Intrusion Detection Systems, Network Security, Security Management

Similiar White Papers

A Brief History of Network Security and the Need for Host Based Intrusion Detection

A Brief History of Network Security and the Need for Host Based Intrusion Detection

This paper describes the present state of information and network security with specific concentration on Host-based Int

Publisher: Tetrad Digital Integrity (TDI)  |  Tags: network, network security

IPS Vs. IDS: Similar on the Surface, Polar Opposites Underneath

IPS Vs. IDS: Similar on the Surface, Polar Opposites Underneath

A common notion is that an Intrusion Prevention System (IPS) is nothing more than an Intrusion Detection System (IDS) de

Publisher: 3Com  |  Tags: ips, network

NAC at the endpoint: Control your network through device compliance

NAC at the endpoint: Control your network through device compliance

Protecting IT networks used to be a straightforward case of encircling computers and servers with a firewall and ensurin

Publisher: Sophos  |  Tags: firewall, nac, network

Evaluations of Host-Based Intrusion Prevention Systems (HIPS): Sana's Primary Response and Cisco's Cisco Security Agent

Evaluations of Host-Based Intrusion Prevention Systems (HIPS): Sana's Primary Response and Cisco's Cisco Security Agent

As part of the Federal Aviation Administration's (FAA's) "Intrusion Quarantine" project, the MITRE Corporation's Center

Publisher: MITRE  |  Tags: csa

White Paper on Intrusion Detection and Intrusion Prevention

White Paper on Intrusion Detection and Intrusion Prevention

The Internet is a medium for fast, efficient communication and interchange of ideas, and an unbounded marketplace for co

Publisher: Bulwark Systems  |  Tags: hackers, network

Academy Publisher White Papers

Discrete LQ Rate Control for MPEG2 Video Streaming System

Discrete LQ Rate Control for MPEG2 Video Streaming System

This paper proposes a novel rate control system by applying the Discrete Linear Quadratic rate control method (DLQ) to t

Publisher: Academy Publisher  |  Tags: ip

Scalable Video Streaming Traffic Delivery in IP/UMTS Networking Environments

Scalable Video Streaming Traffic Delivery in IP/UMTS Networking Environments

The paper discusses the end-to-end QoS provisioning for scalable video streaming traffic delivery over heterogeneous IP/

Publisher: Academy Publisher  |  Tags: ip, qos, umts

COFALE: An Authoring System for Creating Web-Based Adaptive Learning Environments Supporting Cognitive Flexibility

COFALE: An Authoring System for Creating Web-Based Adaptive Learning Environments Supporting Cognitive Flexibility

Constructivism is a learning theory that states that people learn by actively constructing their own knowledge, based on

Publisher: Academy Publisher

Adaptive Streaming of MPEG-Based Audio/Video Content Over Wireless Networks

Adaptive Streaming of MPEG-Based Audio/Video Content Over Wireless Networks

This paper describes a method for robust streaming of combined MPEG audio/video content (encoded either with MPEG-2 or M

Publisher: Academy Publisher  |  Tags: ip, network, wireless networks

Change Prediction in Object-Oriented Software Systems: A Probabilistic Approach

Change Prediction in Object-Oriented Software Systems: A Probabilistic Approach

An estimation of change-proneness of parts of a software system is an active topic in the area of software engineering.

Publisher: Academy Publisher  |  Tags: developers, object-oriented, software, software engineering