Securing Containers: Honeypots for Analysing Container Attacks

2023 15th International Conference on COMmunication Systems & NETworkS (COMSNETS)(2023)

引用 0|浏览4
暂无评分
摘要
Docker Containers are increasingly being used to develop, deploy and distribute software. However, they are also vulnerable to various attacks resulting in breaches and access to the host machines. To understand the various attacks on the containers and study them in a sandbox environment, we develop a honeypot. The honeypot systematically collects data logs of all the activities both inside and outside the container. We build on open source log gathering tool Osquery and Docker APIs to obtain ‘evented’ activity logs. Our honeypot provides granular information about the container activities which can be analyzed to build detection rules and secure the containers.
更多
查看译文
关键词
Container,Docker,Honeypot,Osquery,Container Security
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要