Paper

IoTPOT: A Novel Honeypot for Revealing Current IoT Threats

The authors recorded 180,581 visiting IP addresses and 481,521 download attempts, manually collected 106 binaries, and described five malware families.

HoneypotIoTNetwork

What we know

The authors recorded 180,581 visiting IP addresses and 481,521 download attempts, manually collected 106 binaries, and described five malware families.

Evidence limits

The counts concern exposed Telnet sensors in 2015, not a controlled effectiveness comparison or current threats. Binary collection and analysis were selective.

Reviewed: full text.

Full-text review · 2026-10-02

Design and scope

An 81-day observation in 2015 with IoTPOT on 87 IP addresses and 29 Telnet profiles; combines low-interaction responses with IoTBOX environments spanning eight architectures.

Main finding

The authors recorded 180,581 visiting IP addresses and 481,521 download attempts, manually collected 106 binaries, and described five malware families.

Evidence limits

The counts concern exposed Telnet sensors in 2015, not a controlled effectiveness comparison or current threats. Binary collection and analysis were selective.

Open reviewed full text

Locators: PDF pp. 524–528, Sections 3.2–5.1; PDF pp. 529–531, Sections 6–7

The full text was examined and locators were retained. Single-reviewer synthesis without independent extraction or formal quality appraisal.

Sources and provenance

  1. IoTPOT: A Novel Honeypot for Revealing Current IoT Threats
    full-text · 2026-10-02
  2. Full text examined for Atlas review
    full-text · 2026-10-02

Reviewed: 2026-10-02. This record may change when new evidence is found.

RIS · BibTeX