Escape the Fake: Introducing Simulated Container-Escapes for Honeypots

Daniel Reti,Norman Becker
DOI: https://doi.org/10.48550/arXiv.2104.03651
2021-04-08
Abstract:In the field of network security, the concept of honeypots is well established in research as well as in production. Honeypots are used to imitate a legitimate target on the network and to raise an alert on any interaction. This does not only help learning about a breach, but also allows researchers to study the techniques of an attacker. With the rise of cloud computing, container-based virtualization gained popularity for application deployment. This paper investigates the possibilities of container-based honeypots and introduces the concept of simulating container escapes as a deception technique.
Cryptography and Security,Networking and Internet Architecture
What problem does this paper attempt to address?