A novel stealthy data capture tool for honeypot system

Nguyen Anh Quynh, Yoshiyasu Takefuji

研究成果: Article査読

2 被引用数 (Scopus)

抄録

Data capture tool is one of the core components of a honeypot system. The most vital requirement of this component is: it must function as stealthily as possible, so the intruder is not aware of its presence. Currently Sebek is the most sophisticated tool for this purpose. Unfortunately Sebek is rather easy to detect, even with unprivileged right access. This paper presents a novel approach to improve Sebek on this aspect. We proposes a design and implementation of a tool named Xebek, which is based on Xen technology, to fix the most outstanding problems of Sebek. Our experimental results prove that Xebek is much more covert, while the reliability and efficient are improved significantly.

本文言語English
ページ(範囲)209-215
ページ数7
ジャーナルWSEAS Transactions on Computers
5
1
出版ステータスPublished - 2006 1月

ASJC Scopus subject areas

  • コンピュータ サイエンス(全般)

フィンガープリント

「A novel stealthy data capture tool for honeypot system」の研究トピックを掘り下げます。これらがまとまってユニークなフィンガープリントを構成します。

引用スタイル