Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: Honeypot Server |
|---|---|
| Date: | Fri, 18 Jan 2008 23:32:57 +0200 |
Hi.
If I am an attacker - is there anyway to fingerprint it and know that it's not a server and it's a just a honeypot ...
Yes, there are methods to do this.
My problem is that depending on the already known versions of the honeypots and honeynets software - the attackers will always be able to identify them and thus avoid doing any activities on them ...
It makes an attack several times difficult and sophisticated. The task of security is not to make an attack impossible (because it is impossible), but to make it harder as much as possible. 2008/1/18, m.farid.shawara@gmail.com <m.farid.shawara@gmail.com>:
Thanks for all of you ... When I said Alerting I meant that I should be able to sense the attack when it happens. Another question : If I am an attacker - is there anyway to fingerprint it and know that it's not a server and it's a just a honeypot ... My problem is that depending on the already known versions of the honeypots and honeynets software - the attackers will always be able to identify them and thus avoid doing any activities on them ... Thanks ,,, -----Original Message----- From: pinowudi [mailto:pinowudi@gmail.com] Sent: Friday, January 18, 2008 4:44 AM To: m.farid.shawara@gmail.com Subject: Re: Honeypot Server honeypots are not for alerting. they are for researching the unknown. Look to snort or a nids for your requirements. m.farid.shawara@gmail.com wrote:Dear All : Can you advise what is the best honeypot server available Open-source or commercial - it doesn't matter as long as it will be easytoadministrate and easy to monitor and alerted ... Mohamed Farid ...
-- Best regards. Gleb Pakharenko. http://gpaharenko.livejournal.com
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | RE: how to make secure system, Worrell, Brian |
|---|---|
| Next by Date: | Re: Remote desktop access policy, Josh Haft |
| Previous by Thread: | Re: Logging, infolookup |
| Next by Thread: | Re: Honeypot Server, p1g |
| Indexes: | [Date] [Thread] [Top] [All Lists] |