An Isp Based Notification and Detection System to Maximize Efficiency of Client Honeypots in Protection of End Users

Abstract

End users are increasingly vulnerable to attacks directed at web browsers which make the most of popularity of today’s web services. While organizations deploy several layers of security to protect their systems and data against unauthorised access, surveys reveal that a large fraction of end users do not utilize and/or are not familiar with any security tools. End users’ hesitation and unfamiliarity with security products contribute vastly to the number of online DDoS attacks, malware and Spam distribution. This work on progress paper proposes a design focused on the notion of increased participation of internet service providers in protecting end users. The proposed design takes advantage of three different detection tools to identify the maliciousness of a website content and alerts users through utilising Internet Content Adaptation Protocol (ICAP) by an In-Browser cross-platform messaging system. The system also incorporates the users’ online behaviour analysis to minimize the scanning intervals of malicious websites database by client honeypots. Findings from our proof of concept design and other research indicate that such a design can provide a reliable hybrid detection mechanism while introducing low delay time into user browsing experience.

6 Figures and Tables

Cite this paper

@inproceedings{Mansoori2011AnIB, title={An Isp Based Notification and Detection System to Maximize Efficiency of Client Honeypots in Protection of End Users}, author={Masood Mansoori and Ray Hunt}, year={2011} }