{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,14]],"date-time":"2026-01-14T12:03:40Z","timestamp":1768392220799,"version":"3.49.0"},"reference-count":74,"publisher":"IEEE","license":[{"start":{"date-parts":[[2025,11,4]],"date-time":"2025-11-04T00:00:00Z","timestamp":1762214400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,11,4]],"date-time":"2025-11-04T00:00:00Z","timestamp":1762214400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025,11,4]]},"DOI":"10.1109\/ecrime66972.2025.11327719","type":"proceedings-article","created":{"date-parts":[[2026,1,13]],"date-time":"2026-01-13T20:56:22Z","timestamp":1768337782000},"page":"1-17","source":"Crossref","is-referenced-by-count":0,"title":["Defense of the Clones: Securing Web Applications with Automatic Honeypot Generation and Deployment"],"prefix":"10.1109","author":[{"given":"Billy","family":"Tsouvalas","sequence":"first","affiliation":[{"name":"Stony Brook University,Stony Brook,NY,USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Nick","family":"Nikiforakis","sequence":"additional","affiliation":[{"name":"Stony Brook University,Stony Brook,NY,USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","article-title":"February 28th DDoS Incident Report","author":"Kottler","year":"2018"},{"key":"ref2","article-title":"GitHub Survived the Biggest DDoS Attack Ever Recorded","author":"Hay Newman","year":"2018"},{"key":"ref3","article-title":"Massive brute force attack uses 2.8 million IPs to target VPN devices","author":"Toulas","year":"2025"},{"key":"ref4","article-title":"911 S5 Botnet Dismantled and Its Administrator Arrested in Coordinated International Operation","author":"Release","year":"2024"},{"key":"ref5","article-title":"How Credential Stuffing Bots Bypass Defenses","author":"Pompon","year":"2020"},{"key":"ref6","article-title":"A Game of Cat and Mouse: Dynamic IP Address and Cyber Attacks","year":"2016"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.5555\/3241189.3241275"},{"key":"ref8","article-title":"Using machine learning to detect bot attacks that leverage residential proxies","author":"Azad","year":"2024"},{"key":"ref9","first-page":"1","article-title":"I\u2019m not a human: Breaking the google recaptcha","volume":"14","author":"Sivakorn","year":"2016","journal-title":"Black Hat"},{"key":"ref10","article-title":"Cloudflare JS Challenge: How It Works and How to Solve It","author":"Omisola","year":"2024"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/ISI.2011.5984063"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1145\/2854152"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1145\/2508859.2516671"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-05284-2_4"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1145\/2751323.2751326"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-23644-0_10"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-22424-9_3"},{"key":"ref18","article-title":"Exposing the lack of privacy in file hosting services","volume-title":"4th USENIX Workshop on Large-Scale Exploits and Emergent Threats (LEET 11)","author":"Nikiforakis"},{"key":"ref19","first-page":"6","volume-title":"A generic toolkit for converting web applications into high-interaction honeypots","volume":"280","author":"M\u00fcter","year":"2008"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.14722\/madweb.2020.23005"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-09234-3_17"},{"key":"ref22","volume-title":"Honeypots: tracking hackers","author":"Spitzner","year":"2002"},{"key":"ref23","article-title":"Duplicator","year":"2025"},{"key":"ref24","article-title":"Migrate Guru","year":"2025"},{"key":"ref25","article-title":"JetPack","year":"2025"},{"key":"ref26","article-title":"Softaculous","year":"2025"},{"key":"ref27","article-title":"W3Techs","year":"2025"},{"key":"ref28","article-title":"Ansible","author":"Hat","year":"2025"},{"key":"ref29","article-title":"Xdebug","year":"2025"},{"key":"ref30","article-title":"Openresty","year":"2025"},{"key":"ref31","article-title":"Redis","year":"2025"},{"key":"ref32","article-title":"Lua","year":"2025"},{"key":"ref33","article-title":"List of HIPAA Identifiers","year":"2025"},{"key":"ref34","article-title":"What is considered personal data under the EU GDPR?","year":"2025"},{"key":"ref35","article-title":"PIPEDA: Understanding Canada\u2019s Data Privacy Law","year":"2025"},{"key":"ref36","article-title":"Llama","year":"2025"},{"key":"ref37","article-title":"Usage statistics and market share of content management systems","year":"2025"},{"key":"ref38","article-title":"Uninvited Guests: Analyzing the Identity and Behavior of Certificate Transparency Bots","volume-title":"Proceedings of USENIX Security Symposium (USENIX Security)","author":"Kondracki"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/ICDM.2010.80"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v35i5.16543"},{"key":"ref41","article-title":"Further generalizations of the jaccard index","author":"Costa","year":"2021"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1137\/1.9781611973075.25"},{"key":"ref43","article-title":"WPScan","year":"2025"},{"key":"ref44","article-title":"Script http-joomla-brute","year":"2025"},{"key":"ref45","article-title":"533 million Facebook users\u2019 phone numbers leaked on hacker forum","author":"Abrams","year":"2025"},{"key":"ref46","article-title":"Rockyou common password list","year":"2025"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1145\/42411.42412"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1063\/1.2810663"},{"key":"ref49","volume-title":"Honeypots: tracking hackers","volume":"1","author":"Spitzner","year":"2003"},{"key":"ref50","first-page":"1","article-title":"The use of honeypots and packet sniffers for intrusion detection","volume":"15","author":"Sink","year":"2001","journal-title":"SANS Institute 2000\u20132002"},{"issue":"2004","key":"ref51","first-page":"1","article-title":"A virtual honeypot framework","volume-title":"USENIX Security Symposium","volume":"173","author":"Provos"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-77048-0_34"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1145\/2660267.2660329"},{"key":"ref55","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-22295-5_6"},{"key":"ref56","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-93411-2_12"},{"key":"ref57","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-15512-3_7"},{"key":"ref58","doi-asserted-by":"publisher","DOI":"10.1109\/NOMS.2016.7502992"},{"key":"ref59","doi-asserted-by":"publisher","DOI":"10.1145\/3433210.3453088"},{"key":"ref60","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-64171-8_15"},{"key":"ref61","doi-asserted-by":"publisher","DOI":"10.1145\/2897845.2897890"},{"key":"ref62","doi-asserted-by":"publisher","DOI":"10.1109\/INM.2007.374775"},{"key":"ref63","article-title":"A systematic characterization of im threats using honeypots","volume-title":"ISOC Network and Distributed System Security Symposium (NDSS)","author":"Antonatos"},{"key":"ref64","first-page":"145","article-title":"Compiler-instrumented, dynamic {SecretRedaction} of legacy processes for attacker deception","volume-title":"24th USENIX Security Symposium (USENIX Security 15)","author":"Araujo"},{"key":"ref65","doi-asserted-by":"publisher","DOI":"10.24251\/HICSS.2020.233"},{"key":"ref66","doi-asserted-by":"publisher","DOI":"10.1145\/3230833.3230839"},{"key":"ref67","doi-asserted-by":"publisher","DOI":"10.1109\/ISCTURKEY53027.2021.9654384"},{"key":"ref68","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-18467-8_18"},{"key":"ref69","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2020.2973700"},{"key":"ref70","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2019.2898661"},{"key":"ref71","doi-asserted-by":"publisher","DOI":"10.1109\/MIS.2018.2877277"},{"key":"ref72","article-title":"Integrity, theft protection and cyber deception using a deception-based filesystem","volume-title":"US Patent","author":"Araujo","year":"2020"},{"key":"ref73","doi-asserted-by":"publisher","DOI":"10.1109\/JSYST.2020.2980177"},{"key":"ref74","doi-asserted-by":"publisher","DOI":"10.1109\/HICSS.2006.269"},{"key":"ref75","doi-asserted-by":"publisher","DOI":"10.1145\/3689935.3690394"}],"event":{"name":"2025 APWG Symposium on Electronic Crime Research (eCrime)","location":"San Diego, CA, USA","start":{"date-parts":[[2025,11,4]]},"end":{"date-parts":[[2025,11,7]]}},"container-title":["2025 APWG Symposium on Electronic Crime Research (eCrime)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/11326688\/11327697\/11327719.pdf?arnumber=11327719","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,1,14]],"date-time":"2026-01-14T07:21:02Z","timestamp":1768375262000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11327719\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,11,4]]},"references-count":74,"URL":"https:\/\/doi.org\/10.1109\/ecrime66972.2025.11327719","relation":{},"subject":[],"published":{"date-parts":[[2025,11,4]]}}}