4 papers
A Comparison of Kubernetes Compliance Standards and Configuration Scanners
Michael Krieger, Markus Gierlinger, Farooq Shaikh +1
Kubernetes has become the industry standard for orchestrating containers in microservice-based software architectures. While several hardening guidelines and scanning tools for sec…
Koney: A Cyber Deception Orchestration Framework for Kubernetes
Mario Kahlhofer, Matteo Golinelli, Stefan Rass
System operators responsible for protecting software applications remain hesitant to implement cyber deception technology, including methods that place traps to catch attackers, de…
Honeyquest: Rapidly Measuring the Enticingness of Cyber Deception Techniques with Code-based Questionnaires
Mario Kahlhofer, Stefan Achleitner, Stefan Rass +1
Fooling adversaries with traps such as honeytokens can slow down cyber attacks and create strong indicators of compromise. Unfortunately, cyber deception techniques are often poorl…
Application Layer Cyber Deception without Developer Interaction
Mario Kahlhofer, Stefan Rass
Cyber deception techniques that are tightly intertwined with applications pose significant technical challenges in production systems. Security measures are usually the responsibil…