Invention Grant
- Patent Title: Apparatus and method for implementing network deception
-
Application No.: US15662910Application Date: 2017-07-28
-
Publication No.: US10440055B2Publication Date: 2019-10-08
- Inventor: Patrick D. Allen , Steven A. Handy , Aaron M. David , James G. Castle , Mark A. Matties
- Applicant: The Johns Hopkins University
- Applicant Address: US MD Baltimore
- Assignee: The Johns Hopkins University
- Current Assignee: The Johns Hopkins University
- Current Assignee Address: US MD Baltimore
- Agent Noah J. Hayward
- Main IPC: G06F21/00
- IPC: G06F21/00 ; H04L29/06 ; G06F11/30 ; G06F21/55

Abstract:
An example apparatus configured to perform network deception may include processing circuitry configured to generate virtual instances of decoy resources residing within a defined host network for presentation to cyber attackers, control at least one software defined network switch to monitor network traffic directed to real and decoy resources of the defined host network, and route network traffic based on detected interactions with the decoy resources. The decoy resources may have differing levels of decoy fidelity, where decoy fidelity indicates a difficulty for a cyber attacker to determine that the resource is a decoy. Additionally, generating the virtual instances of decoy resources may be performed without modification to real assets or real services residing in the defined host network. Furthermore, decoy services may be made to appear on real network assets using software defined networking without modification to the real assets or real services residing in the defined host network.
Public/Granted literature
- US20180103061A1 APPARATUS AND METHOD FOR IMPLEMENTING NETWORK DECEPTION Public/Granted day:2018-04-12
Information query