Intelligent Threat Detection-AI-Driven Analysis of Honeypot Data to Counter Cyber Threats

被引:0
作者
Lanka, Phani [1 ]
Gupta, Khushi [1 ]
Varol, Cihan [1 ]
机构
[1] Sam Houston State Univ, Dept Comp Sci, Huntsville, TX 77340 USA
关键词
honeypots; computer security; cyberattack; data security; machine learning;
D O I
10.3390/electronics13132465
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Security adversaries are rampant on the Internet, constantly seeking vulnerabilities to exploit. The sheer proliferation of these sophisticated threats necessitates innovative and swift defensive measures to protect the vulnerable infrastructure. Tools such as honeypots effectively determine adversary behavior and safeguard critical organizational systems. However, it takes a significant amount of time to analyze these attacks on the honeypots, and by the time actionable intelligence is gathered from the attacker's tactics, techniques, and procedures (TTPs), it is often too late to prevent potential damage to the organization's critical systems. This paper contributes to the advancement of cybersecurity practices by presenting a cutting-edge methodology, capitalizing on the synergy between artificial intelligence and threat analysis to combat evolving cyber threats. The current research articulates a novel strategy, outlining a method to analyze large volumes of attacker data from honeypots utilizing large language models (LLMs) to assimilate TTPs and apply this knowledge to identify real-time anomalies in regular user activity. The effectiveness of this model is tested in real-world scenarios, demonstrating a notable reduction in response time for detecting malicious activities in critical infrastructure. Moreover, we delve into the proposed framework's practical implementation considerations and scalability, underscoring its adaptability in diverse organizational contexts.
引用
收藏
页数:28
相关论文
共 47 条
  • [1] Automated Cyber Threat Intelligence Generation from Honeypot Data
    Sanjeev, Kumar
    Janet, B.
    Eswari, R.
    INVENTIVE COMMUNICATION AND COMPUTATIONAL TECHNOLOGIES, ICICCT 2019, 2020, 89 : 591 - 598
  • [2] Code analysis for intelligent cyber systems: A data-driven approach
    Coulter, Rory
    Han, Qing-Long
    Pan, Lei
    Zhang, Jun
    Xiang, Yang
    INFORMATION SCIENCES, 2020, 524 (46-58) : 46 - 58
  • [3] A Conceptual Model for Data-Driven Threat Analysis for Enhancing Cyber Security
    Alwaheidi, Mohammed K. S.
    Islam, Shareeful
    Papastergiou, Spyridon
    PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON INNOVATIONS IN COMPUTING RESEARCH (ICR'22), 2022, 1431 : 365 - 374
  • [4] Honeypot Based Industrial Threat Detection Using Game Theory in Cyber-Physical System
    Zhou, Xiangming
    Almutairi, Laila
    Alsenani, Theyab R.
    Ahmad, Mohammad Nazir
    JOURNAL OF GRID COMPUTING, 2023, 21 (04)
  • [5] Honeypot Based Industrial Threat Detection Using Game Theory in Cyber-Physical System
    Xiangming Zhou
    Laila Almutairi
    Theyab R. Alsenani
    Mohammad Nazir Ahmad
    Journal of Grid Computing, 2023, 21
  • [6] AI Enabled Threat Detection: Leveraging Artificial Intelligence for Advanced Security and Cyber Threat Mitigation
    Dhanushkodi, Kavitha
    Thejas, S.
    IEEE ACCESS, 2024, 12 : 173127 - 173136
  • [7] Big Data in Cybersecurity: Enhancing Threat Detection with AI and ML
    Kumar, Busireddy Hemanth
    Nuka, Sai Teja
    Malempati, Murali
    Sriram, Harish Kumar
    Mashetty, Someshwar
    Kannan, Sathya
    METALLURGICAL & MATERIALS ENGINEERING, 2025, 31 (03) : 12 - 20
  • [8] Integrating AI-driven threat intelligence and forecasting in the cyber security exercise content generation lifecycle
    Zacharis, Alexandros
    Katos, Vasilios
    Patsakis, Constantinos
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2024, 23 (04) : 2691 - 2710
  • [9] Machine learning-based cyber threat detection: an approach to malware detection and security with explainable AI insights
    Farida Siddiqi Prity
    Md. Shahidul Islam
    Emran Hossain Fahim
    Md. Maruf Hossain
    Sazzad Hossain Bhuiyan
    Md. Ariful Islam
    Mirza Raquib
    Human-Intelligent Systems Integration, 2024, 6 (1) : 61 - 90
  • [10] Analysis of Cyber-Intelligence Frameworks for AI Data Processing
    del Monte, Alberto Sanchez
    Hernandez-Alvarez, Luis
    APPLIED SCIENCES-BASEL, 2023, 13 (16):