{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,26]],"date-time":"2026-03-26T15:36:02Z","timestamp":1774539362827,"version":"3.50.1"},"publisher-location":"New York, NY, USA","reference-count":30,"publisher":"ACM","license":[{"start":{"date-parts":[[2023,8,29]],"date-time":"2023-08-29T00:00:00Z","timestamp":1693267200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2023,8,29]]},"DOI":"10.1145\/3600160.3604993","type":"proceedings-article","created":{"date-parts":[[2023,8,9]],"date-time":"2023-08-09T22:54:41Z","timestamp":1691621681000},"page":"1-10","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":12,"title":["An Improved Honeypot Model for Attack Detection and Analysis"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-7646-8166","authenticated-orcid":false,"given":"Marwan","family":"Abbas-Escribano","sequence":"first","affiliation":[{"name":"Telecom Sud Paris, France and S\u00e9same IT, France"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1344-4167","authenticated-orcid":false,"given":"Herv\u00e9","family":"Debar","sequence":"additional","affiliation":[{"name":"Telecom Sud Paris, France"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2023,8,29]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"2022. Matrix - Enterprise | MITRE ATT&CK\u00ae. https:\/\/attack.mitre.org\/versions\/v11\/matrices\/enterprise\/"},{"key":"e_1_3_2_1_2_1","unstructured":"2022. Purplesec 2022 Cyber Security Statistics Trends & Data. https:\/\/purplesec.us\/resources\/cyber-security-statistics\/"},{"key":"e_1_3_2_1_3_1","unstructured":"2023. CAPEC - Common Attack Pattern Enumerations and Classifications. https:\/\/capec.mitre.org\/"},{"key":"e_1_3_2_1_4_1","unstructured":"2023. Elastic https:\/\/www.elastic.co\/."},{"key":"e_1_3_2_1_5_1","unstructured":"2023. Linux Containers. https:\/\/linuxcontainers.org\/lxc\/"},{"key":"e_1_3_2_1_6_1","unstructured":"2023. VirusTotal. https:\/\/www.virustotal.com\/gui\/home\/upload"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","unstructured":"Palvi Aggarwal and Gonzalez et al.2016. Cyber-Security: Role of Deception in Cyber-Attack Detection. Cham. https:\/\/doi.org\/10.1007\/978-3-319-41932-9_8","DOI":"10.1007\/978-3-319-41932-9_8"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","unstructured":"E. Alata V. Nicomette and M.\u00a0et\u00a0al. Kaaniche. 2006. Lessons learned from the deployment of a high-interaction honeypot. https:\/\/doi.org\/10.1109\/EDCC.2006.17","DOI":"10.1109\/EDCC.2006.17"},{"key":"e_1_3_2_1_9_1","unstructured":"Maxime Alay-Eddine. 2023. Richelieu. https:\/\/github.com\/tarraschk\/richelieu"},{"key":"e_1_3_2_1_10_1","unstructured":"Commvault. 2023. Metallic.io Threat Wise. https:\/\/metallic.io\/threatwise-cyber-deception"},{"key":"e_1_3_2_1_11_1","unstructured":"CounterCraft. 2023. CounterCraft. https:\/\/www.countercraftsec.com\/"},{"key":"e_1_3_2_1_12_1","unstructured":"Marc Dacier and F. Pouget. 2012. Attack processes found on the internet. (03 2012)."},{"key":"e_1_3_2_1_13_1","unstructured":"DinoTools. 2021. Dionaea. https:\/\/github.com\/DinoTools\/dionaea"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","unstructured":"Lim et\u00a0al. Djap Ryandy. 2021. XB-Pot: Revealing Honeypot-based Attacker\u2019s Behaviors. https:\/\/doi.org\/10.1109\/ICoICT52021.2021.9527422","DOI":"10.1109\/ICoICT52021.2021.9527422"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","unstructured":"Kheir et\u00a0al. Han Xiao. 2017. Evaluation of Deception-Based Web Attacks Detection. Dallas Texas USA. https:\/\/doi.org\/10.1145\/3140549.3140555","DOI":"10.1145\/3140549.3140555"},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","unstructured":"et\u00a0al Jorquera\u00a0Valero. 2020. Identification and Classification of Cyber Threats Through SSH Honeypot Systems:. https:\/\/doi.org\/10.4018\/978-1-7998-2242-4.ch006","DOI":"10.4018\/978-1-7998-2242-4.ch006"},{"key":"e_1_3_2_1_18_1","unstructured":"Marty\u00a0Roesch Lance\u00a0Spitzner. 2001. The value of honeypots part one: Definitions and values of honeypots. http:\/\/www.symantec.com\/connect\/articles\/value-honeypots-part-one-definitions-and-values-honeypots"},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1109\/WISTDCS.2008.8"},{"key":"e_1_3_2_1_20_1","unstructured":"Lockheed Martin. 2015. Gaining the advantage. https:\/\/www.lockheedmartin.com\/content\/dam\/lockheed-martin\/rms\/documents\/cyber\/Gaining_the_Advantage_Cyber_Kill_Chain.pdf"},{"key":"e_1_3_2_1_21_1","volume":"201","author":"Ryan\u00a0","unstructured":"Ryan\u00a0J McCaughey. 2017. Deception using an SSH honeypot. Technical Report. Naval Postgraduate School Monterey United States.","journal-title":"J McCaughey."},{"key":"e_1_3_2_1_22_1","unstructured":"Marcin et\u00a0al. Nawrocki. 2016. A Survey on Honeypot Software and Data Analysis. http:\/\/arxiv.org\/abs\/1608.06249"},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1007\/s11416-010-0144-2"},{"key":"e_1_3_2_1_24_1","volume-title":"Breach Report","author":"IBM\u00a0Security Ponemon Institute","year":"2020","unstructured":"IBM\u00a0Security Ponemon Institute\u00a0LLC. 2020. Cost of a Data Breach Report 2020. (2020). https:\/\/www.ibm.com\/downloads\/cas\/RZAX14GX"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","unstructured":"Karthikeyan\u00a0.K. R and A. Indra. 2010. Intrusion Detection Tools and Techniques \u2013A Survey. International Journal of Computer Theory and Engineering (2010) 901\u2013906. https:\/\/doi.org\/10.7763\/IJCTE.2010.V2.260","DOI":"10.7763\/IJCTE.2010.V2.260"},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","unstructured":"Ryandy Charles Lim and Kalpin\u00a0Erlangga Silaen. 2020. XT-Pot: EXposing Threat Category of Honeypot-Based Attacks. https:\/\/doi.org\/10.1145\/3429789.3429868","DOI":"10.1145\/3429789.3429868"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","unstructured":"B. Scottberg W. Yurcik and D. Doss. 2002. Internet honeypots: protection or entrapment?https:\/\/doi.org\/10.1109\/ISTAS.2002.1013842","DOI":"10.1109\/ISTAS.2002.1013842"},{"key":"e_1_3_2_1_28_1","volume-title":"Honeypots: tracking hackers (1. print ed.)","author":"Lance Spitzner","unstructured":"Lance Spitzner. 2003. Honeypots: tracking hackers (1. print ed.). Addison-Wesley, Boston Munich."},{"key":"e_1_3_2_1_29_1","unstructured":"Applebaum\u00a0A. Strom\u00a0B.E.2020. MITRE ATT&CK: Design and Philosophy. https:\/\/attack.mitre.org\/docs\/ATTACK_Design_and_Philosophy_March_2020.pdf"},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","unstructured":"Solomon Z.\u00a0Melese and P.S. Avadhani. 2016. Honeypot System for Attacks on SSH Protocol. International Journal of Computer Network and Information Security (2016). https:\/\/doi.org\/10.5815\/ijcnis.2016.09.03","DOI":"10.5815\/ijcnis.2016.09.03"},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","unstructured":"Li Zhang and Vrizlynn. L.\u00a0L. Thing. 2021. Three decades of deception techniques in active cyber defense - Retrospect and outlook. (2021). https:\/\/doi.org\/10.1016\/j.cose.2021.102288","DOI":"10.1016\/j.cose.2021.102288"}],"event":{"name":"ARES 2023: The 18th International Conference on Availability, Reliability and Security","location":"Benevento Italy","acronym":"ARES 2023"},"container-title":["Proceedings of the 18th International Conference on Availability, Reliability and Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3600160.3604993","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3600160.3604993","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T16:36:13Z","timestamp":1750178173000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3600160.3604993"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,8,29]]},"references-count":30,"alternative-id":["10.1145\/3600160.3604993","10.1145\/3600160"],"URL":"https:\/\/doi.org\/10.1145\/3600160.3604993","relation":{},"subject":[],"published":{"date-parts":[[2023,8,29]]},"assertion":[{"value":"2023-08-29","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}