Behavioral Analysis of Bot Activity in Infected Systems Using Honeypots
The result's identifiers
Result code in IS VaVaI
<a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F61988987%3A17310%2F17%3AA1901WE9" target="_blank" >RIV/61988987:17310/17:A1901WE9 - isvavai.cz</a>
Result on the web
<a href="http://dx.doi.org/10.1007/978-3-319-59767-6_10" target="_blank" >http://dx.doi.org/10.1007/978-3-319-59767-6_10</a>
DOI - Digital Object Identifier
<a href="http://dx.doi.org/10.1007/978-3-319-59767-6_10" target="_blank" >10.1007/978-3-319-59767-6_10</a>
Alternative languages
Result language
angličtina
Original language name
Behavioral Analysis of Bot Activity in Infected Systems Using Honeypots
Original language description
New Internet threats emerge on daily basis and honeypots have become widely used for capturing them in order to investigate their activities. The paper focuses on a detailed analysis of the behavior of various attacks agains 7 Linux-based honeypots. The attacks were analyzed according to the threat type, session duration, AS, country and RIR of the attack origin. Clusters of similar objects were formed accordingly and certain typical attack patterns for potential detection automation as well as some aspects of threat dissemination were identified.
Czech name
—
Czech description
—
Classification
Type
D - Article in proceedings
CEP classification
—
OECD FORD branch
10200 - Computer and information sciences
Result continuities
Project
—
Continuities
S - Specificky vyzkum na vysokych skolach
Others
Publication year
2017
Confidentiality
S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů
Data specific for result type
Article name in the collection
Communications in Computer and Information Science
ISBN
978-3-319-59767-6
ISSN
—
e-ISSN
—
Number of pages
16
Pages from-to
118-133
Publisher name
Springer
Place of publication
—
Event location
Lądek Zdrój
Event date
Jun 20, 2017
Type of event by nationality
WRD - Celosvětová akce
UT code for WoS article
000425528200010