J-Honeypot: A Java-Based Network Deception Tool with Monitoring and Intrusion Detection

  • Authors:
  • Yuqing Mai;Radhika Upadrashta;Xiao Su

  • Affiliations:
  • -;-;-

  • Venue:
  • ITCC '04 Proceedings of the International Conference on Information Technology: Coding and Computing (ITCC'04) Volume 2 - Volume 2
  • Year:
  • 2004

Quantified Score

Hi-index 0.00

Visualization

Abstract

In this paper, we describe the development of J-Honeypot,a Java-based network deception tool witha web-based monitoring interface and a rule-basedintrusion detection engine. Our J-Honeypot is basedon the Honeyd program by Niels Provos, butfeatures important enhancements. First, since J-Honeypotis written in Java, it can potentially runon various platforms, windows or UNIX,workstations or handheld devices. Second, J-Honeypothas a rule-based intrusion detectionengine, whose design is guided by the analysis ofreal world attack data. The attack data wascollected by opening up our J-Honeypot to solicitpossible attacks. Third, J-Honeypot includes a web-basedmonitoring tool that is easily accessible andcan help network administrators better understandnetwork traffic and possible attacks.