Deception Technology
Deploying decoy resources (honeypots, honeytokens) to detect attackers.
Term
description · examples · notesDeploying decoy resources (honeypots, honeytokens) to detect attackers.
Description
Honeypots simulate vulnerable systems that attract and log attacker activity.
Honeytokens are fake credentials or files whose use triggers an alert.
No false positives — any interaction with deception resources is suspicious.
Provides early warning and intelligence about attacker techniques.
What people often say
- A honeypot does not have to be complex — even a simple fake service provides valuable data.
- Deception is not only for large organizations — open-source honeypots are free.
Covers / does not cover
Covers
- Honeypots and honeytokens
- Early detection of lateral movement
- Collecting attacker TTPs
Does not cover
- Prevention of initial breach
- Automated incident response
- Endpoint protection from malware
Threats
reduces 3Threats it reduces. Select one to open its page.
Techniques
neutralizes 4Techniques it neutralizes. Select one to open its page.