Detection and Prevention of New and Unknown Malware using Honeypots
Shishir Kumar, Durgesh Pant

TL;DR
This paper proposes a novel honeypot-based system to detect, analyze, and rapidly broadcast cures for new and unknown malware, enhancing network security by enabling quick response to emerging threats.
Contribution
It introduces a system that uses honeypots to generate and broadcast real-time anti-malware signatures for unknown threats, improving upon traditional detection methods.
Findings
Honeypots can be used to generate instant malware cures.
The system can provide early protection against new malware.
Rapid dissemination of cures can limit malware spread.
Abstract
Security has become ubiquitous in every domain today as newly emerging malware pose an ever-increasing perilous threat to systems. Consequently, honeypots are fast emerging as an indispensible forensic tool for the analysis of malicious network traffic. Honeypots can be considered to be traps for hackers and intruders and are generally deployed complimentary to Intrusion Detection Systems (IDS) and Intrusion Prevention Systems (IPS) in a network. They help system administrators perform a rigorous analysis of external and internal attacks on their networks. They are also used by security firms and research labs to capture the latest variants of malware. However, honeypots would serve a slightly different purpose in our proposed system. We intend to use honeypots for generating and broadcasting instant cures for new and unknown malware in a network. The cures which will be in the form of…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsNetwork Security and Intrusion Detection · Internet Traffic Analysis and Secure E-voting · Advanced Malware Detection Techniques
