Publications (15)
Deep Down the Rabbit Hole: On References in Networks of Decoy Elements
Daniel Reti, Daniel Fraunholz, Janis Zemitis +2
Deception technology has proven to be a sound approach against threats to information systems. Aside from well-established honeypots, decoy elements, also known as honeytokens, are…
Robust Semi-Supervised Temporal Intrusion Detection for Adversarial Cloud Networks
Anasuya Chattopadhyay, Daniel Reti, Hans D. Schotten
Cloud networks increasingly rely on machine learning based Network Intrusion Detection Systems to defend against evolving cyber threats. However, real-world deployments are challen…
GNN-based Anomaly Detection for Encoded Network Traffic
Anasuya Chattopadhyay, Daniel Reti, Hans D. Schotten
The early research report explores the possibility of using Graph Neural Networks (GNNs) for anomaly detection in internet traffic data enriched with information. While recent stud…
Secure (S)Hell: Introducing an SSH Deception Proxy Framework
Daniel Reti, David KlaaÃen, Simon Duque Anton +1
Deceiving an attacker in the network security domain is a well established approach, mainly achieved through deployment of honeypots consisting of open network ports with the sole…
Escape the Fake: Introducing Simulated Container-Escapes for Honeypots
Daniel Reti, Norman Becker
In the field of network security, the concept of honeypots is well established in research as well as in production. Honeypots are used to imitate a legitimate target on the networ…
Demystifying Deception Technology:A Survey
Daniel Fraunholz, Simon Duque Anton, Christoph Lipps +5
Deception boosts security for systems and components by denial, deceit, misinformation, camouflage and obfuscation. In this work an extensive overview of the deception technology e…
The Global State of Security in Industrial Control Systems: An Empirical Analysis of Vulnerabilities around the World
Simon Daniel Duque Anton, Daniel Fraunholz, Daniel Krohmer +3
Operational Technology (OT)-networks and -devices, i.e. all components used in industrial environments, were not designed with security in mind. Efficiency and ease of use were the…
Frontier AI Auditing: Toward Rigorous Third-Party Assessment of Safety and Security Practices at Leading AI Companies
Miles Brundage, Noemi Dreksler, Aidan Homewood +45
We outline a vision for frontier AI auditing, which we define as rigorous third-party verification of frontier AI developers' safety and security claims, and evaluation of their sy…
Evaluation of Reinforcement Learning for Autonomous Penetration Testing using A3C, Q-learning and DQN
Norman Becker, Daniel Reti, Evridiki V. Ntagiou +2
Penetration testing is the process of searching for security weaknesses by simulating an attack. It is usually performed by experienced professionals, where scanning and attack too…
SCANTRAP: Protecting Content Management Systems from Vulnerability Scanners with Cyber Deception and Obfuscation
Daniel Reti, Karina Elzer, Hans Dieter Schotten
Every attack begins with gathering information about the target. The entry point for network breaches are often vulnerabilities in internet facing websites, which often rely on an…
Creating it from SCRATCh: A Practical Approach for Enhancing the Security of IoT-Systems in a DevOps-enabled Software Development Environment
Simon D Duque Anton, Daniel Fraunholz, Daniel Krohmer +9
DevOps describes a method to reorganize the way different disciplines in software engineering work together to speed up software delivery. However, the introduction of DevOps-metho…
Application of Virtualization Technologies in Novel Industrial Automation: Catalyst or Show-Stopper?
Michael Gundall, Daniel Reti, Hans D. Schotten
Industry 4.0 describes an adaptive and changeable production, where its factory cells have to be reconfigured at very short intervals, e.g. after each workpiece. Furthermore, this…
Evaluating Deception and Moving Target Defense with Network Attack Simulation
Daniel Reti, Karina Elzer, Daniel Fraunholz +2
In the field of network security, with the ongoing arms race between attackers, seeking new vulnerabilities to bypass defense mechanisms and defenders reinforcing their prevention,…
Act as a Honeytoken Generator! An Investigation into Honeytoken Generation with Large Language Models
Daniel Reti, Norman Becker, Tillmann Angeli +4
With the increasing prevalence of security incidents, the adoption of deception-based defense strategies has become pivotal in cyber security. This work addresses the challenge of…
Robustness of Excitations in the Random Dimer Model
Daniel Reti
The ground state solution of the random dimer model is at a critical point after, which has been shown with random link excitations. In this paper we test the robustness of the ran…