166 terms · 75/46/45
Defense № 031 · class: resilience

Deception Technology

Deploying decoy resources (honeypots, honeytokens) to detect attackers.

Term

description · examples · notes

Deploying decoy resources (honeypots, honeytokens) to detect attackers.

Description

Honeypots simulate vulnerable systems that attract and log attacker activity.

Honeytokens are fake credentials or files whose use triggers an alert.

No false positives — any interaction with deception resources is suspicious.

Provides early warning and intelligence about attacker techniques.

What people often say

  • A honeypot does not have to be complex — even a simple fake service provides valuable data.
  • Deception is not only for large organizations — open-source honeypots are free.

Covers / does not cover

Covers

  • Honeypots and honeytokens
  • Early detection of lateral movement
  • Collecting attacker TTPs

Does not cover

  • Prevention of initial breach
  • Automated incident response
  • Endpoint protection from malware
Composite

Threats

reduces 3

Threats it reduces. Select one to open its page.

Techniques

neutralizes 4

Techniques it neutralizes. Select one to open its page.