Targeted Honeypot Deployment for Analyzing and Mitigating Threats

Fuente: Zenodo
Saved in:
Bibliographic Details
Main Author: Dr.G.Aravind Swaminathan, M.Sowndaryaa
Format: Recurso digital
Published: Zenodo 2025
Online Access:
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1866902079798247424
author Dr.G.Aravind Swaminathan, M.Sowndaryaa
author_facet Dr.G.Aravind Swaminathan, M.Sowndaryaa
contents <p>Cyber threats continue to evolve, posing significant risks to small and mid-sized businesses that often lack the financial resources for advanced cybersecurity. With the rise of sophisticated attack techniques like brute-force attempts, ransomware infections, and credential stuffing, these businesses become prime targets due to weaker security postures. This project deploys a targeted honeypot system using Cowrie,a medium-interaction SSH honeypot, to analyze SSH brute-force attacks and study potential ransomware tactics. By acting as a decoy, the honeypot captures attacker activity, including login attempts, command executions, and<br>malware injection techniques, providing valuable threat intelligence. Unlike traditional reactive security<br>measures, this proactive approach identifies attack patterns before they can be exploited. The insights gained<br>help businesses refine security strategies, strengthen authentication mechanisms, and anticipate threats<br>without requiring significant financial investment. While real-time ransomware execution monitoring was not implemented due to security risks and time constraints, the honeypot remains a crucial tool in<br>cybersecurity research. The findings from this study emphasize the importance of continuous monitoring,<br>threat intelligence gathering, and proactive security measures in mitigating evolving cyber threats.</p>
format Recurso digital
id zenodo_https___doi_org_10_5281_zenodo_15305920
institution Zenodo
language
publishDate 2025
publisher Zenodo
record_format zenodo
spellingShingle Targeted Honeypot Deployment for Analyzing and Mitigating Threats
Dr.G.Aravind Swaminathan, M.Sowndaryaa
<p>Cyber threats continue to evolve, posing significant risks to small and mid-sized businesses that often lack the financial resources for advanced cybersecurity. With the rise of sophisticated attack techniques like brute-force attempts, ransomware infections, and credential stuffing, these businesses become prime targets due to weaker security postures. This project deploys a targeted honeypot system using Cowrie,a medium-interaction SSH honeypot, to analyze SSH brute-force attacks and study potential ransomware tactics. By acting as a decoy, the honeypot captures attacker activity, including login attempts, command executions, and<br>malware injection techniques, providing valuable threat intelligence. Unlike traditional reactive security<br>measures, this proactive approach identifies attack patterns before they can be exploited. The insights gained<br>help businesses refine security strategies, strengthen authentication mechanisms, and anticipate threats<br>without requiring significant financial investment. While real-time ransomware execution monitoring was not implemented due to security risks and time constraints, the honeypot remains a crucial tool in<br>cybersecurity research. The findings from this study emphasize the importance of continuous monitoring,<br>threat intelligence gathering, and proactive security measures in mitigating evolving cyber threats.</p>
title Targeted Honeypot Deployment for Analyzing and Mitigating Threats
url https://doi.org/10.5281/zenodo.15305920