---
格式版本: 2
标题: "Improving LLM-Based SSH Honeypots Through Prompting and Fine-Tuning"
原文链接: "https://arxiv.org/abs/2608.18686"
发布日期: "2026-08-19"
发布时间校准状态: "found"
发布时间需复核: "否"
发布时间来源: "rule:local:strict_original_body"
发布时间证据: "**\\[v1\\]** Wed, 19 Aug 2026 08:35:04 UTC (107 KB)"
发布时间校准原因: "规则确认唯一严格发布时间，来源 local:strict_original_body"
发布时间校准置信度: "high"
发布时间候选数量: 18
发布时间严格候选数量: 6
发布时间原页读取状态: "source template page reused from URL open"
发布时间未找到原因: ""
发布时间校准时间: "2026-08-20T15:23:18+08:00"
发布时间仲裁状态: "skipped"
发布时间仲裁尝试次数: 0
发布时间仲裁耗时毫秒: 0
发现时间: "2026-08-20T15:18:01+08:00"
入库时间: "2026-08-20T07:23:18.427Z"
来源平台: "arXiv 学术论文搜索"
搜索渠道: "source_template"
搜索词: "https://arxiv.org/search/?query=deployment&searchtype=all"
匹配关键词:
  - "deployment"
  - "AI"
相关厂家:
  []
相关专家:
  []
内容类型: "网页"
抓取工具: "Free Fetch + Defuddle"
清洗工具: "Defuddle Markdown + Defuddle/Readability 正文提取"
原始附件:
  []
AI优质: "否"
AI打分: 10
AI分档: "非优质"
AI质检状态: "不通过"
AI打分理由: "论文为LLM SSH蜜罐技术研究，涉及Cryptography and Security领域，与超节点、AI Rack、机柜级AI基础设施、供电散热互连等主题完全无关，且无厂商或专家关联，属于明显无关内容。"
AI质检模型: "ali-deepseek-v4-flash"
AI质检时间: "2026-08-20T15:27:11+08:00"
AI主题相关性: 0
AI来源权威性: 5
AI新颖性: 0
AI技术细节: 0
AI商业部署信号: 0
AI完整性: 5
AI摘要: "该研究通过提示设计和监督微调改进本地大语言模型SSH蜜罐的shell仿真准确性，评估了8个模型并用34项自动化测试衡量效果。结果发现提示设计影响显著，基于蜜罐日志扩展数据集微调能明显提升本地模型，但两者效果不叠加。"
AI摘要模型: "ali-deepseek-v4-flash"
AI摘要时间: "2026-09-07T03:17:12.893Z"
采集批次: "2026年8月20日14点19分32秒"
采集批次ID: "20260820-141932-079"
去重键: "https://arxiv.org/abs/2608.18686"
---

## Computer Science > Cryptography and Security

## Title:Improving LLM-Based SSH Honeypots Through Prompting and Fine-Tuning

[View PDF](https://arxiv.org/pdf/2608.18686) [HTML (experimental)](https://arxiv.org/html/2608.18686v1)

> Abstract:LLM-based SSH honeypots often use closed cloud LLMs because they give strong shell realism, but cloud models create deployment problems. These include no stable versioning, provider-side changes, attacker-driven cost, and model decommissioning. Local open-weight models avoid these problems, but they usually perform worse and make mistakes that reveal the honeypot. These mistakes include malformed outputs, command echoing, inconsistent filesystem state, and AI-style artifacts. This paper studies how to improve and evaluate the shell emulation accuracy of local LLM-based SSH honeypots using prompt design and supervised fine-tuning. We fine-tune and evaluate eight models in total: the original fine-tuned GPT-3.5 model used in shelLM and seven open-weight local models, each compared to its base model. We also test how prompt structure transfers across model families. Using 34 automated unit tests that measure shell emulation accuracy in single-session and fresh-session settings, we find that prompt design has a large effect and that fine-tuning depends on dataset coverage. Fine-tuning on the original 112-conversation dataset does not improve aggregate pass rate, while an expanded dataset built from honeypot logs produces clearly stronger local models. Taken together, the results suggest that prompting and fine-tuning can each improve local LLM honeypots on their own, but their effects do not combine straightforwardly, since strong rule-based prompting and supervised adaptation can also conflict by addressing overlapping shell-behavior constraints.

| Subjects: | Cryptography and Security (cs.CR) |
| --- | --- |
| Cite as: | [arXiv:2608.18686](https://arxiv.org/abs/2608.18686) \[cs.CR\] |
|  | (or [arXiv:2608.18686v1](https://arxiv.org/abs/2608.18686v1) \[cs.CR\] for this version) |
|  | [https://doi.org/10.48550/arXiv.2608.18686](https://doi.org/10.48550/arXiv.2608.18686) |

## Submission history

From: Veronica Valeros \[[view email](https://arxiv.org/show-email/45841455/2608.18686)\]  
**\[v1\]** Wed, 19 Aug 2026 08:35:04 UTC (107 KB)

[Which authors of this paper are endorsers?](https://arxiv.org/auth/show-endorsers/2608.18686) | Disable MathJax ([What is MathJax?](https://info.arxiv.org/help/mathjax.html))
