Attack Detection in Cloud Virtual Environment and Prevention Using Honeypot

Poonam A Pandire, V. B. Gaikwad · 2018 International Conference on Inventive Research in Computing Applications (ICIRCA) · 2018

Due to increase in problems like space allocation, web hosting, hardware failure which results in the loss of data. This problem can be solved by new technologies in cloud computing. With the passing of time and the advancements in technology, the usage of cloud storage has increased tremendously which has resulted in the increase of the threats on cloud. Attackers can easily find vulnerabilities present in the system and exploit the data that it holds by using a port scanner. In such a way the DDOS (Distributed Denial of Service) attack will compromise the machine. In such type of attacks, multi-step exploitation, low frequency vulnerability scanning, compromises other machines to develop zombie systems. Lastly, the attacks that are caused by those compromised machines are the problem seen in such type of attacks. To detect and prevent an attack on the system, a network intrusion detection selection is done on them with the help of honeypots. Honeypots lure attackers away from the main system preventing it from the attack and protecting its integrity. A Nice-A agent continuously monitors the network. The VM Profillerwill update the database forsuch attacks taking place on open ports in the network. This attack type is analysed by attack analyser. After recognizing the type of attack, it gives notification to network controller and suggest the countermeasure to be taken. The attack is further directed to honeypot. A security mechanism honeypot which detects and deflects an unauthorized user trying to access the information system. Honeypot thus tracks the attacker IP and its signature attack.

Read the paper · More papers on PaperTik