Whitepapers and Resources
Where you can learn more about honeypots
Honeypots are a highly diverse technology, they come in many shapes and sizes. No single resource can give
you all the documentation you need concerning them. Listed here are a variety of more resources
where you can learn more.
Whitepapers:
- Wireless Honeypot Trickery.
Paper covers the concept of wireless honeypots.
- Problems and Challenges
with Honeypots. Paper identifies several problems with the concepts of honeypots,
and possible solutions.
- Fighting Spammers with
Honeypots. Paper covering how to use honeypots to identify, track, and counter
spammers.
- Using Honeypots to Fight Worms.
Paper covering different ways honeypots can be used to detect, identify, stop, and even
strike back against worms, the plague of the Internet.
- Dynamic Honeypots.
Honeypots that dynamically learn your network then
deploy virtual honeypots that adapt to your network. We are much closer
to this technology then you think!
- Honeypot Farms.
This paper discusses the new concept of deploying distributed honeypot using
a consolidated honeypot farm.
- Honeytokens: The Other Honeypot.
This paper discusses the new concept of honeytokens, honeypots that are not computers.
- The Use of Honeynets to Detect Exploited Systems Across
Large Enterprise Networks. An extremely interesting paper written by Georgia Institute of Technology
a IEEE security workshop. The Georgia Institute of Technology has several Honeynets deployed on a
network of 30,000+ systems. The Honeynets repeatedly demonstrated their value detecting
compromised systems, systems that other detection technologies failed to discover.
- Honeypots: Are They Illegal?.
Overview of the legal issues (and misconceptions) of honeypots.
- Honeypots: Simple, Cost-Effective Detection.
Paper detailing the value of honeypots for detection, and how they address problems with traditional
IDS solutions.
- Honeypots: Definitions and Values:
This paper describes what a honeypot is, the different types, and their value. A great place to start
if you are new to honeypots.
- An Evening with Berferd. One of the very first papers that
discusses honeypot technologies. Published by Bill Cheswick in 1990 this paper is technical.
Books:
- The Cuckoo's Egg.
Book about a real hacking incident, the first book about using a honeypot to study and track a hacker.
Authored in by Cliff Stoll, this book reads like a spy novel, recounting how Mr. Stoll tracked
a German hacker as he broke into the Lawrence Berkeley Labs. Published in 1990 by Pocket Books.
-
Honeypots: Tracking Hackers. First technical book dedicated to discussing honeypots technologies and
how they work. Authored by Lance Spitzner in 2002, published by Addison-Wesley.
- Know Your Enemy. Written by the members of the
Honeynet Project, this book covers what Honeynets are, one type of honeypot. These technologies
are used primarily for research purposes. Published in 2001 by Addison-Wesley.
Sites:
Other sites with additional information about honeypots.