错误:搜索内容不能为空,请输入英文关键词
错误:关键词超出字数限制,请精简
高级检索

Honeypoint Technology

  • Zhihong Tian,
  • Yuan Liu,
  • Binxing Fang

摘要

Honeypoint technology represents an evolution of traditional Honeypot and deception systems, designed to enhance adaptability, scalability, and threat visibility. By leveraging modular principles of self-learning, configurability, and dynamic adaptation, Honeypoints provide defenders with flexible tools for detecting and analyzing adversarial behavior. Different types of Honeypoints are developed to cover diverse attack surfaces, including service Honeypoints for mimicking real applications, traffic Honeypoints for monitoring malicious flows, domain controller Honeypoints for identity-based deception, and system Honeypoints that act as tripwires within critical infrastructures to capture advanced threats at the host and operating system level. Beyond these, emerging designs such as neural Honeypoints and LLM-driven Honeypoint generation highlight the integration of advanced AI into deception defense. Collectively, Honeypoint technology shifts deception from passive entrapment to an active, intelligence-driven paradigm, enabling proactive engagement, attacker attribution, and system-level resilience (This chapter was supported by the Strategic Research and Consulting Project of the Chinese Academy of Engineering (No.2023-JB-13)).