Publication:
Distributed Honeypot log management and visualization of attacker geographical distribution

dc.contributor.authorVasaka Visoottivisethen_US
dc.contributor.authorUttapol Jaralrungrojen_US
dc.contributor.authorEkkachai Phoomrungraungsuken_US
dc.contributor.authorPongpak Kultanonen_US
dc.contributor.otherMahidol Universityen_US
dc.date.accessioned2018-05-03T08:09:08Z
dc.date.available2018-05-03T08:09:08Z
dc.date.issued2011-07-21en_US
dc.description.abstractHoneypot is a prominent technology that helps us learn new hacking techniques from attackers and intruders. The much information from multiple Honeypot servers, the more appropriate signatures we can generate. To ease the administrator to manage and monitor trace files from multiple Honeypot servers that are distributed in various locations at the same time, in this paper we design and implement a prototype of log management server to automatically and periodically collect log files from them. Information reported by each Honeypot server will be sent in secure manner to the log management server. The log management server then parses the information into the database server, where users can search for specific information through the web interface, such as searching based on one or two Honeypot servers. Moreover, the geographical distribution of attackers is visualized in the world map by utilizing the WHOIS database and GeoPlot software. © 2011 IEEE.en_US
dc.identifier.citationProceedings of the 2011 8th International Joint Conference on Computer Science and Software Engineering, JCSSE 2011. (2011), 23-28en_US
dc.identifier.doi10.1109/JCSSE.2011.5930083en_US
dc.identifier.other2-s2.0-79960410676en_US
dc.identifier.urihttps://repository.li.mahidol.ac.th/handle/123456789/11783
dc.rightsMahidol Universityen_US
dc.rights.holderSCOPUSen_US
dc.source.urihttps://www.scopus.com/inward/record.uri?partnerID=HzOxMe3b&scp=79960410676&origin=inwarden_US
dc.subjectComputer Scienceen_US
dc.titleDistributed Honeypot log management and visualization of attacker geographical distributionen_US
dc.typeConference Paperen_US
dspace.entity.typePublication
mu.datasource.scopushttps://www.scopus.com/inward/record.uri?partnerID=HzOxMe3b&scp=79960410676&origin=inwarden_US

Files

Collections