Published September 30, 2022 | Version v1
Conference paper Open

HoneyChart: Automated Honeypot Management Over Kubernetes

  • 1. Georgia Institute of Technology
  • 2. Technical University of Crete (TUC), Telecommunication Systems Research Institute (TSI)
  • 3. Technical University of Crete (TUC)
  • 4. Telecommunication Systems Research Institute (TSI)
  • 5. Telecommunication Systems Research Institute (TSI), The Foundation for Research and Technology – Hellas (FORTH)
  • 6. Technical University of Crete (TUC), The Foundation for Research and Technology – Hellas (FORTH)

Description

Honeypots have been proven to be a useful tool in the arsenal of defense solutions against cyber-attacks. Over time, various honeypot solutions have been proposed to lure attackers that target both conven- tional networks and Industrial Control Systems. However, the current approaches do not make the deployment and usability of honeypots more attractive to defenders. In this paper we propose HoneyChart, a framework for honeypot deployment that leverages on Helm Charts for Kubernetes to create honeypot templates from existing virtualized environments and deploy the appropriate honeypots based on the desired services. HoneyChart allows the fast and automated deployment of containerized honeypots, allowing the defenders to focus on what really matters: the analysis of attacks, IoCs and imminent threats.

Files

honeychart-cps4cip-2022.pdf

Files (573.1 kB)

Name Size Download all
md5:4fa5aa64f5fddb37cc989985ab9c4448
573.1 kB Preview Download