Skip to main navigation Skip to search Skip to main content

Constructing cost-effective and targetable industrial control system honeypots for production networks

  • Michael Winn
  • , Mason Rice
  • , Stephen Dunlap
  • , Juan Lopez
  • , Barry Mullins

Research output: Contribution to journalArticlepeer-review

28 Scopus citations

Abstract

Critical infrastructure assets - and especially industrial control systems - are at risk. Malicious actors are constantly developing exploits that sneak past security controls. Honeypots offer an opportunity to acquire knowledge about the tactics, techniques and procedures used by malicious entities to compromise sensitive systems. However, the proprietary, and often expensive, hardware and software used by industrial control systems make it very challenging to build flexible, economical and scalable honeypots. This paper describes a technique that uses proxy technology to produce multiple high-interaction honeypots using a single programmable logic controller. The technique provides a cost-effective method for distributing multiple, authentic, targetable honeypots at slightly more than the cost of a single programmable logic controller.

Original languageEnglish
Pages (from-to)47-58
Number of pages12
JournalInternational Journal of Critical Infrastructure Protection
Volume10
DOIs
StatePublished - Sep 1 2015
Externally publishedYes

Keywords

  • Honeypots
  • Industrial control systems
  • Production networks
  • Programmable logic controllers

Fingerprint

Dive into the research topics of 'Constructing cost-effective and targetable industrial control system honeypots for production networks'. Together they form a unique fingerprint.

Cite this