DEF CON 32 - Decoding Galah, an LLM Powered Web Honeypot - Adel Karimi
Description:
Explore an innovative DEF CON conference talk that unveils Galah, a groundbreaking LLM-powered web honeypot designed to revolutionize cybersecurity monitoring. Learn how this advanced tool dynamically generates HTTP responses to simulate multiple web applications through a single prompt, moving beyond traditional low-interaction honeypot methods. Discover the comparative performance of various large language models in generating HTTP messages and understand how authentic-looking responses impact attacker engagement. Gain valuable insights from real-world deployment experiences and understand the practical implications of using AI-powered honeypots for monitoring internet-wide scans and analyzing attacker behaviors.