The RoT-1 Chapter of the Honeynet Project was founded in November 2010. The members include:
Areas of research conducted by the members:
Currently, there are two Honeeebox sensors deployed at Rice University and at a members home in Houston, Tx.
Adam Pridgen augmented a the Volatility 2.0 Framework so that JSON output could be acquired from the frameworks tools when analyzing memory images. This functionality could then be used to store and mine the resulting output with using a NoSQL database like CouchDB or MongoDB. After noting a shortcoming in the acquisition, he has started investigating a more complete method of acquisition by modifying VirtualBox and capturing modified memory pages when they are paged out of physical memory. The ultimate goal is to be able to run virtual honeypots for extended periods with the ability to capture and reconstruct memory using periodic full memory snapshots and the captured pages in-between each memory snapshot to capture a more complete forensic picture of the honeypots memory.
Adam Pridgen and Ryan Smith were HPGSOC '12 mentors. Adam Pridgen co-mentored Oğuz Yarımtepe along with Nicolas Collery on the Network Analyzer Project. Ryan Smith stepped in to mentor Weilin Xu who was selected to work on the IPv6 Honeypot.