{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,28]],"date-time":"2025-03-28T10:05:34Z","timestamp":1743156334580,"version":"3.40.3"},"publisher-location":"Cham","reference-count":21,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783030846138"},{"type":"electronic","value":"9783030846145"}],"license":[{"start":{"date-parts":[[2021,8,9]],"date-time":"2021-08-09T00:00:00Z","timestamp":1628467200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2021,8,9]],"date-time":"2021-08-09T00:00:00Z","timestamp":1628467200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2022]]},"DOI":"10.1007\/978-3-030-84614-5_12","type":"book-chapter","created":{"date-parts":[[2021,8,8]],"date-time":"2021-08-08T20:02:23Z","timestamp":1628452943000},"page":"151-162","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":1,"title":["Identifying Anomalous Industrial-Control-System Network Flow Activity Using Cloud Honeypots"],"prefix":"10.1007","author":[{"given":"Neil C.","family":"Rowe","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Thuy D.","family":"Nguyen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jeffery T.","family":"Dougherty","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Matthew C.","family":"Bieker","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Darry","family":"Pilkington","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2021,8,9]]},"reference":[{"key":"12_CR1","doi-asserted-by":"crossref","unstructured":"Stouffer, K., Pillitteri, V., Lightman, S., Abrams, M., Hahn, A.: Guide to industrial control systems (ICS) security. In: National Institute of Standards and Technology, Gaithersburg, MD, US, NIST SP 800-82 Revision 2 (2015)","DOI":"10.6028\/NIST.SP.800-82r2"},{"issue":"8","key":"12_CR2","doi-asserted-by":"crossref","first-page":"84","DOI":"10.1016\/j.tej.2014.08.008","volume":"27","author":"C Hawk","year":"2014","unstructured":"Hawk, C., Kaushiva, A.: Cybersecurity and the smarter grid. Electr. J. 27(8), 84\u201395 (2014)","journal-title":"Electr. J."},{"key":"12_CR3","doi-asserted-by":"crossref","unstructured":"Blume, S.: System overview, terminology, and basic concepts. In: Electrical Power System Basics for the Nonelectrical Professional, pp. 1\u201312. Wiley, Hoboken (2007)","DOI":"10.1002\/9780470185810.ch1"},{"key":"12_CR4","unstructured":"Greenberg, A: Crash override: the malware that took down a power grid. Wired (2017)"},{"key":"12_CR5","unstructured":"Atadika, M., Burke, K., Rowe, N.: Critical risk management practices to mitigate cloud migration misconfigurations. In: Proceedings of International Conference on Computational Science and Computational Intelligence, Las Vegas, NV, United States (2019)"},{"key":"12_CR6","doi-asserted-by":"crossref","unstructured":"Rowe, N., Nguyen, T., Kendrick, M., Rucker, Z., Hyun, D., Brown, J.: Creating effective industrial-control-systems honeypots. In: Proceedings of Hawaii International Conference on Systems Sciences, Wailea, HI, USA (2020)","DOI":"10.24251\/HICSS.2020.228"},{"key":"12_CR7","unstructured":"Redwood, W.: Cyber physical system vulnerability research. Ph.D. dissertation, Florida State University (2016)"},{"key":"12_CR8","doi-asserted-by":"crossref","unstructured":"Dalamagkas, C., et al.: A survey on honeypots, honeynets and their applications on the smart grid. In: Proceedings of the 2019 IEEE Conference on Network Softwarization, Paris, France (2019)","DOI":"10.1109\/NETSOFT.2019.8806693"},{"key":"12_CR9","doi-asserted-by":"crossref","unstructured":"Serbanescu, A., Obermeier, S., Yu, D.-Y.: ICS threat analysis using a large-scale honeynet. In: Proceedings of 3rd International Symposium for ICS and SCADA Cyber Security Research, pp. 20\u201330 (2015)","DOI":"10.14236\/ewic\/ICS2015.3"},{"key":"12_CR10","unstructured":"Barak, I.: Cybereason\u2019s newest honeypot shows how multistage ransomware attacks should have critical infrastructure providers on high alert. J. Cyber Policy (2020)"},{"key":"12_CR11","unstructured":"Quantalytics, Q GridPot. www.quantalytics.com\/q-GridPot\/. Accessed 18 Jan 2019"},{"key":"12_CR12","unstructured":"Litchfield, S.: Honeyphy: a physics-aware CPS honeypot framework. Master\u2019s thesis, Georgia Institute of Technology, Atlanta, GA, US (2017)"},{"key":"12_CR13","doi-asserted-by":"crossref","unstructured":"Buza, D., Juh\u00e1sz, F., Miru, G., F\u00e9legyh\u00e1zi, M., Holczer, T.: CryPLH: protecting smart energy systems from targeted attacks with a PLC honeypot. In: Proceedings of International Workshop on Smart Grid Security, pp. 181\u2013192 (2014)","DOI":"10.1007\/978-3-319-10329-7_12"},{"key":"12_CR14","doi-asserted-by":"crossref","unstructured":"Antonioli, D., Agrawal, A., Tippenhauer, N.: Towards high-interaction virtual ICS honeypots-in-a-box. In: Proceedings of 2nd ACM Workshop on Cyber-Physical Systems Security and Privacy, pp. 13\u201322 (2016)","DOI":"10.1145\/2994487.2994493"},{"key":"12_CR15","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-41187-3","volume-title":"Introduction to Cyberdeception","author":"N Rowe","year":"2016","unstructured":"Rowe, N., Rrushi, J.: Introduction to Cyberdeception. Springer, Cham (2016). https:\/\/doi.org\/10.1007\/978-3-319-41187-3"},{"key":"12_CR16","doi-asserted-by":"publisher","first-page":"35","DOI":"10.1007\/978-3-030-02110-8_3","volume-title":"Autonomous Cyber Deception","author":"NC Rowe","year":"2019","unstructured":"Rowe, N.C.: Honeypot deception tactics. In: Al-Shaer, E., Wei, J., Hamlen, K.W., Wang, C. (eds.) Autonomous Cyber Deception, pp. 35\u201345. Springer, Cham (2019). https:\/\/doi.org\/10.1007\/978-3-030-02110-8_3"},{"key":"12_CR17","unstructured":"GridLAB-D Project: GridLAB-D Github page. https:\/\/github.com\/gridlab-d\/gridlab-d. Accessed 09 Aug 2020"},{"key":"12_CR18","unstructured":"Dougherty, J.: Evasion of honeypot detection mechanisms through improved interactivity of ICS-based systems. Master\u2019s thesis, U.S. Naval Postgraduate School (2020)"},{"key":"12_CR19","unstructured":"Bieker, M., Pilkington, D.: Deploying an ICS honeypot in a cloud computing environment and comparatively analyzing results against physical network deployment. Master\u2019s thesis, U.S. Naval Postgraduate School (2020)"},{"key":"12_CR20","unstructured":"Paganini, A.: IndigoSCADA User Manual, rev. 334. http:\/\/www.enscada.com\/a7khg9\/IndigoSCADA_user_manual.pdf. Accessed 13 Aug 2019"},{"key":"12_CR21","unstructured":"Boddy, M., Jones, B., Stockley, M.: RDP exposed - the threat that\u2019s already at your door. In: Sophos White paper. Sophos, Inc. (2019)"}],"container-title":["Lecture Notes in Networks and Systems","National Cyber Summit (NCS) Research Track 2021"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-84614-5_12","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,1,6]],"date-time":"2023-01-06T22:43:40Z","timestamp":1673045020000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-030-84614-5_12"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,8,9]]},"ISBN":["9783030846138","9783030846145"],"references-count":21,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-84614-5_12","relation":{},"ISSN":["2367-3370","2367-3389"],"issn-type":[{"type":"print","value":"2367-3370"},{"type":"electronic","value":"2367-3389"}],"subject":[],"published":{"date-parts":[[2021,8,9]]},"assertion":[{"value":"9 August 2021","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"NCS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"National Cyber Summit","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Huntsville, AL","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"USA","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2021","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"8 June 2021","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"10 June 2021","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"ncs2021","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/www.nationalcybersummit.com\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}