2013/01/30 by Matthias Wählisch, Wählisch, Matthias, André Vorbach +10
Computer Science · #Advanced Malware Detection Techniques #C.2.0 #C.2.6 #C.4 #Cryptography and Security (cs.CR) #FOS: Computer and information sciences #Internet Traffic Analysis and Secure E-voting #Network Security and Intrusion Detection #Networking and Internet Architecture (cs.NI) #cs.CR #cs.NI
paper · pdf · doi:10.48550/arxiv.1301.7257
arxiv created 2013/01/30 · openalex publication_date 2013/01/30 · arxiv updated 2013/04/02 · openalex created_date 2025/10/10 · openalex updated_date 2026/07/28
Mobile nodes, in particular smartphones are one of the most relevant devices in the current Internet in terms of quantity and economic impact. There is the common believe that those devices are of special interest for attackers due to their limited resources and the serious data they store. On the other hand, the mobile regime is a very lively network environment, which misses the (limited) ground truth we have in commonly connected Internet nodes. In this paper we argue for a simple long-term measurement infrastructure that allows for (1) the analysis of unsolicited traffic to and from mobile devices and (2) fair comparison with wired Internet access. We introduce the design and implementation of a mobile honeypot, which is deployed on standard hardware for more than 1.5 years. Two independent groups developed the same concept for the system. We also present preliminary measurement results.