{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,28]],"date-time":"2026-06-28T05:06:33Z","timestamp":1782623193484,"version":"3.54.5"},"publisher-location":"Cham","reference-count":21,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783319392066","type":"print"},{"value":"9783319392073","type":"electronic"}],"license":[{"start":{"date-parts":[[2016,1,1]],"date-time":"2016-01-01T00:00:00Z","timestamp":1451606400000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2016]]},"DOI":"10.1007\/978-3-319-39207-3_11","type":"book-chapter","created":{"date-parts":[[2016,5,31]],"date-time":"2016-05-31T05:18:01Z","timestamp":1464671881000},"page":"118-131","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":5,"title":["High-Interaction Linux Honeypot Architecture in Recent Perspective"],"prefix":"10.1007","author":[{"given":"Tomas","family":"Sochor","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Matej","family":"Zuzcak","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2016,6,1]]},"reference":[{"issue":"12","key":"11_CR1","first-page":"5567","volume":"6","author":"E Kheirkhah","year":"2013","unstructured":"Kheirkhah, E., et al.: An experimental study of SSH attacks by using honeypot decoys. Indian J. Sci. Technol. 6(12), 5567\u20135578 (2013)","journal-title":"Indian J. Sci. Technol."},{"key":"11_CR2","series-title":"Communications in Computer and Information Science","doi-asserted-by":"publisher","first-page":"92","DOI":"10.1007\/978-3-319-19419-6_9","volume-title":"Computer Networks","author":"P Sokol","year":"2015","unstructured":"Sokol, P., Andrejko, M.: Deploying honeypots and honeynets: issues of liability. In: Gaj, P., Kwiecie\u0144, A., Stera, P. (eds.) CN 2015. CCIS, vol. 522, pp. 92\u2013101. Springer, Heidelberg (2015)"},{"key":"11_CR3","series-title":"Communications in Computer and Information Science","doi-asserted-by":"publisher","first-page":"118","DOI":"10.1007\/978-3-319-07941-7_12","volume-title":"Computer Networks","author":"T Sochor","year":"2014","unstructured":"Sochor, T., Zuzcak, M.: Study of internet threats and attack methods using honeypots and honeynets. In: Kwiecie\u0144, A., Gaj, P., Stera, P. (eds.) CN 2014. CCIS, vol. 431, pp. 118\u2013127. Springer, Heidelberg (2014)"},{"key":"11_CR4","series-title":"Communications in Computer and Information Science","doi-asserted-by":"publisher","first-page":"69","DOI":"10.1007\/978-3-319-19419-6_7","volume-title":"Computer Networks","author":"T Sochor","year":"2015","unstructured":"Sochor, T., Zuzcak, M.: Attractiveness study of honeypots and honeynets in internet threat detection. In: Gaj, P., Kwiecie\u0144, A., Stera, P. (eds.) CN 2015. CCIS, vol. 522, pp. 69\u201381. Springer, Heidelberg (2015)"},{"key":"11_CR5","series-title":"Communications in Computer and Information Science","doi-asserted-by":"publisher","first-page":"265","DOI":"10.1007\/978-3-319-07941-7_27","volume-title":"Computer Networks","author":"O Pomorova","year":"2014","unstructured":"Pomorova, O., Savenko, O., Lysenko, S., Kryshchuk, A., Nicheporuk, A.: A technique for detection of bots which are using polymorphic code. In: Kwiecie\u0144, A., Gaj, P., Stera, P. (eds.) CN 2014. CCIS, vol. 431, pp. 265\u2013276. Springer, Heidelberg (2014)"},{"key":"11_CR6","series-title":"Communications in Computer and Information Science","doi-asserted-by":"publisher","first-page":"127","DOI":"10.1007\/978-3-319-19419-6_12","volume-title":"Computer Networks","author":"O Pomorova","year":"2015","unstructured":"Pomorova, O., Savenko, O., Lysenko, S., Kryshchuk, A., Bobrovnikova, K.: A technique for the botnet detection based on DNS-traffic analysis. In: Gaj, P., Kwiecie\u0144, A., Stera, P. (eds.) CN 2015. CCIS, vol. 522, pp. 127\u2013138. Springer, Heidelberg (2015)"},{"key":"11_CR7","unstructured":"The Honeynet Project: Know Your Enemy: Sebek - A kernel based data capture tool. Honeynet.org. (2003). \n                    http:\/\/old.honeynet.org\/papers\/sebek.pdf"},{"key":"11_CR8","unstructured":"Grudziecki, T. et al.: Proactive Detection of Security Incidents Honeypots. In: Polska, C., ENISA (eds.) ENISA (2012). \n                    https:\/\/www.enisa.europa.eu\/publications\/proactive-detection-of-security-incidents-II-honeypots"},{"key":"11_CR9","unstructured":"Dornseif, M., Holz, T., Klein, C.N.: NoSEBrEaK - Attacking Honeynets (2004). \n                    http:\/\/arxiv.org\/abs\/cs\/0406052"},{"key":"11_CR10","unstructured":"Corey, J.: Local Honeypot Identification (2003). \n                    http:\/\/www.phrack.org\/unofficial\/p62\/p62-0x07.txt"},{"key":"11_CR11","unstructured":"Quynh, N.A., Takefuji, Y.: A novel stealthy data capture tool for honeynet system. In: Proceedings of the 4th WSEAS International Conference on Information Security, Communications and Computers, Tenerife, pp. 207\u2013212 (2005)"},{"key":"11_CR12","unstructured":"Portokalidis, G., Slowinska, A., Bos, H.: Argos: an emulator for fingerprinting zero-day attacks for advertised honeypots with automatic signature generation. In: ACM SIGOPS Operating Systems Review, vol. 40(4), pp. 15\u201327. ACM (2006). \n                    http:\/\/www.few.vu.nl\/argos\/papers\/p15-portokalidis.pdf"},{"key":"11_CR13","unstructured":"Floeren, S.: Honeypot-architectures using VMI techniques. In: Proceeding zum Seminar Future Internet (FI), Innovative Internet Technologien und Mobilkommunikation und Autonomous Communication Networks, vol. 17, pp. 17\u201323 (2013)"},{"key":"11_CR14","unstructured":"Song, C., Ha, B., Zhuge, J.: Know your tools: Qebek-conceal the monitoring. In: Proceedings of 6th IEEE Information Assurance Workshop. The Honeynet Project (2015)"},{"key":"11_CR15","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"198","DOI":"10.1007\/978-3-540-74320-0_11","volume-title":"Recent Advances in Intrusion Detection","author":"X Jiang","year":"2007","unstructured":"Jiang, X., Wang, X.: \u201cOut-of-the-Box\u201d monitoring of VM-based high-interaction honeypots. In: Kruegel, C., Lippmann, R., Clark, A. (eds.) RAID 2007. LNCS, vol. 4637, pp. 198\u2013218. Springer, Heidelberg (2007)"},{"key":"11_CR16","doi-asserted-by":"crossref","unstructured":"Jiang, X., Wang, X., Xu, D.: Stealthy malware detection through vmm-based out-of-the-box semantic view reconstruction. In: Proceedings of the 14th ACM Conference on Computer and Communications Security, pp. 128\u2013138. ACM (2007)","DOI":"10.1145\/1315245.1315262"},{"key":"11_CR17","unstructured":"Lengyel, T.K., Neumann, J., Maresca, S., Payne, B.D., Kiayias, A.: Virtual machine introspection in a hybrid honeypot architecture. In: CSET (2012)"},{"key":"11_CR18","doi-asserted-by":"crossref","unstructured":"Lengyel, T.K., Maresca, S., Payne, B.D., Webster, G.D., Vogl, S., Kiayias, A.: Scalability, fidelity and stealth in the DRAKVUF dynamic malware analysis system. In: Proceedings of the 30th Annual Computer Security Applications Conference. ACM (2014)","DOI":"10.1145\/2664243.2664252"},{"key":"11_CR19","unstructured":"Chen, P.M., Noble, B.D.: When virtual is better than real. In: Proceedings of the Eighth Workshop on Hot Topics in Operating Systems HOTOS 2001. IEEE Computer Society (2001)"},{"key":"11_CR20","doi-asserted-by":"crossref","unstructured":"Dolan-Gavitt, B., Leek, T., Zhivich, M., Giffin, J., Lee, W.: Virtuoso: n arrowing the semantic gap in virtual machine introspection. In: Security and Privacy, pp. 297\u2013312. IEEE (2011)","DOI":"10.1109\/SP.2011.11"},{"key":"11_CR21","unstructured":"Monnappa, K.A.: Automating Linux Malware Analysis Using Limon Sandbox. \n                    https:\/\/www.blackhat.com\/docs\/eu-15\/materials\/eu-15-KA-Automating-Linux-Malware-Analysis-Using-Limon-Sandbox-wp.pdf"}],"container-title":["Communications in Computer and Information Science","Computer Networks"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-39207-3_11","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,5,20]],"date-time":"2019-05-20T23:04:48Z","timestamp":1558393488000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-319-39207-3_11"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2016]]},"ISBN":["9783319392066","9783319392073"],"references-count":21,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-39207-3_11","relation":{},"ISSN":["1865-0929","1865-0937"],"issn-type":[{"value":"1865-0929","type":"print"},{"value":"1865-0937","type":"electronic"}],"subject":[],"published":{"date-parts":[[2016]]},"assertion":[{"value":"1 June 2016","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}}]}}