Spamlaws Glossary

Honeypot

Honeypot
A honeypot can be defined as a security application or device whose value lies in being explored and compromised. In general, it acts as a mechanism that exposes the services of a server and waits for or seeks out an attack. A client honeypot is a more defined variation that actively seeks out malicious servers that may attack clients. It poses as a client and interacts with the server to determine if an attack has occurred. Up until recently, the primary focus of a client honeypot has been aimed towards web browsers. Now, any client that interacts with a server can be associated with a client honeypot. This may include FTP, SSH and email clients. There are many terms used to described a client honeypot. Honeyclient, the first open source implementation of the program, is perhaps the most commonly used name. A honeymonkey is also frequently associated with a client honeypot.
Honeypot