Re: A kind of Honeypot

From: Antonio Stano (astano@tele-servizi.com)
Date: Fri Jun 22 2001 - 01:32:56 PDT

  • Next message: Russell, Pat: "SAM file editing"

    About Specter i am using it to make a review of the product.
    I have to say it's impressive it emulates 11 operating systems
    Has configurable traps like sun rcp, web server, fake telnet.
    If effect if you make a portscan with nmap -O you can discover the =
    really operating system so i think the scope of honeypot is useless.
    Anyway it's a good tool and i am proposing to spectre to add a scripting =
    language.
    Also DTK is nice as honeypot
    and also Mantrap form Recourse Technologies
    (the nice thing is that this kind of honeypot doen't emulate an os
    but installs an hardened version of Solaris)
    If you need any further infos feel free to contact me
    
    Antonio Stano
    Securityinfos
    http://www.securityinfos.com
    
    At the time I was using BOF by NFR, but this is no longer available.
    One commercial honeypot solution that may work for you laptop is Specter
    (www.specter.com).
    
    lance
    



    This archive was generated by hypermail 2b30 : Fri Jun 22 2001 - 15:11:54 PDT