Skip to main navigation Skip to search Skip to main content

Using honeyclients to detect malicious websites

  • School of Computer Science and Technology, Harbin Institute of Technology

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

Using malicious sites to launch attacks against client user applications is a growing threat in recent years. This led to emergence of new technologies to counter and detect this type of client-side attacks. One of these technologies is honeyclient. Honeyclients crawl the Internet to find and identify web servers that exploit client-side vulnerabilities. In this paper, we address honeyclients by studying and analyzing low and high interactive honeyclients. We introduce comparison attributes to evaluate honeyclients, and applying them to compare among HoneyC and Capture as examples on each type. Moreover, we present some techniques can be used by malicious websites to counter and fingerprint honeyclients, and we make recommendations to overcome these evasion techniques.

Original languageEnglish
Title of host publication2010 2nd International Conference on E-Business and Information System Security, EBISS2010
Pages46-51
Number of pages6
DOIs
StatePublished - 2010
Externally publishedYes
Event2nd International Conference on e-Business and Information System Security, EBISS2010 - Wuhan, China
Duration: 22 May 201023 May 2010

Publication series

Name2010 2nd International Conference on E-Business and Information System Security, EBISS2010

Conference

Conference2nd International Conference on e-Business and Information System Security, EBISS2010
Country/TerritoryChina
CityWuhan
Period22/05/1023/05/10

Keywords

  • 0-day attacks
  • Client-side attacks
  • Crawlers
  • Honeyclients
  • Honeypots
  • Intrusion detection
  • Malicious websites

Fingerprint

Dive into the research topics of 'Using honeyclients to detect malicious websites'. Together they form a unique fingerprint.

Cite this