Sangam: A Confluence of Knowledge Streams

Creating Effective Industrial-Control-System Honeypots

Show simple item record

dc.contributor Naval Postgraduate School (U.S.)
dc.creator Rowe, Neil C.
dc.creator Nguyen, Thuy D.
dc.creator Kendrick, Marian M.
dc.creator Rucker, Zaki A.
dc.creator Hyun, Dahae
dc.creator Brown, Justin C.
dc.date 2020
dc.date 2022-03-08T00:14:47Z
dc.date 2022-03-08T00:14:47Z
dc.date 2020
dc.date.accessioned 2022-05-19T07:40:02Z
dc.date.available 2022-05-19T07:40:02Z
dc.identifier http://hdl.handle.net/10945/69038
dc.identifier.uri http://localhost:8080/xmlui/handle/CUHPOERS/100118
dc.description Proceedings of the 53rd Hawaii International Conference on System Sciences | 2020
dc.description The article of record at published may be found at https://hdl.handle.net/10125/63967
dc.description Cyberattacks on industrial control systems (ICSs) can be especially damaging since they often target critical infrastructure. Honeypots are valuable network-defense tools, but they are difficult to implement for ICSs because they must then simulate more than familiar protocols. This research compared the performance of the Conpot and GridPot honeypot tools for simulating nodes on an electric grid for live (not recorded) traffic. We evaluated the success of their deceptions by observing their activity types and by scanning them. GridPot received a higher rate of traffic than Conpot, and many visitors to both were deceived as to whether they were dealing with a honeypot. We also tested Shodan’ s Honeyscore for finding honeypots, and found it was fooled by our honeypots as well as others when, like most users, it did not take site history into account. This is good news for collecting useful attack intelligence with ICS honeypots.
dc.format 10 p.
dc.format application/pdf
dc.publisher HICSS
dc.rights This publication is a work of the U.S. Government as defined in Title 17, United States Code, Section 101. Copyright protection is not available for this work in the United States.
dc.title Creating Effective Industrial-Control-System Honeypots
dc.type Conference Paper


Files in this item

Files Size Format View
Rowe_et-al_Crea ... em_Honeypots_HARC_2020.pdf 355.4Kb application/pdf View/Open

This item appears in the following Collection(s)

Show simple item record

Search DSpace


Advanced Search

Browse