|
||||||||||||||||||||||||||||
|
HoneypotHoneypot A honeypot can be defined as a security application or device whose value lies in being explored and compromised. In general, it acts as a mechanism that exposes the services of a server and waits for or seeks out an attack.
A client honeypot is a more defined variation that actively seeks out malicious servers that may attack clients. It poses as a client and interacts with the server to determine if an attack has occurred. Up until recently, the primary focus of a client honeypot has been aimed towards web browsers. Now, any client that interacts with a server can be associated with a client honeypot.
This may include FTP, SSH and email clients.
There are many terms used to described a client honeypot. Honeyclient, the first open source implementation of the program, is perhaps the most commonly used name. A honeymonkey is also frequently associated with a client honeypot. |
|||||||||||||||||||||||||||