Honeypots mailing list archives

Re: Honeypot Defintion - Almost There!


From: Jon Price <jon () nytimes com>
Date: Sat, 24 May 2003 20:27:40 -0400


Though I'd put in my 2 cents.....


A honeypot is a tool which helps system security professionals proactively learn about system vulnerabilities and techniques hackers use to exploit them, without a "real" system being compromised (eg. no loss of important data or privacy). This involves three main steps: 1.) set a "trap" for the hackers; 2.) wait for hackers to compromise the "system/trap"; and 3.) using previously setup monitors, record the hacker's exploits, unbeknownst to them.

Jon



At 05:29 AM 5/24/2003 +0300, Erik S. Johansen wrote:
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

I'd prefer a splitup, more like this...

A honeypot *is* an information system resource which is designed to appear to
unauthorized or illicit users as some other kind of information system
resource.

A honeypots *value* lies in the effect unauthorized or illicit use of that
resource has for its authorized users.


- --Erik


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (GNU/Linux)

iD8DBQE+ztkUds9m9uhAobARAp92AKCniDMY7Xnokqi86A25BSmBeeLKPgCeKMeC
ACZK8XDV1xdGYI0mNWC3Hr0=
=n4Hg
-----END PGP SIGNATURE-----


Current thread: