Library / sourced records

Resource library

Search by kind, technique, environment or critical readings. Each record states its source and review depth.

187published resources

Results

50 found
Product

Deception.Pro

Review: Public pageCritical reading

Persistent instrumented environments for malware detonation and adversary observation, according to the platform description.

NetworkEndpointDecoyAdversary engagement
Open software

Dionaea

Review: RepositoryCritical reading

Honeypot project for observing attacks against network services.

NetworkHoneypot
Case study

Energy Company / Proofpoint Shadow

Review: Public pageCritical reading

Energy company Shadow adoption story published by Proofpoint; investigation-time reduction is a customer statement reported by the vendor.

EndpointIdentityDecoy
Product

Fidelis Deception

Review: Public pageCritical reading

Commercial decoy and breadcrumb platform for network, identity and cloud, according to Fidelis.

NetworkIdentityDecoyHoneytoken
Product

FortiDeceptor

Review: Public pageCritical reading

Fortinet platform for deploying decoy assets and alerting on their use.

NetworkOT/ICSDecoyHoneypot
Open software

Galah

Review: RepositoryCritical reading

Web honeypot using a language model to generate interactions.

ApplicationHoneypot
Open software

Glastopf

Review: RepositoryCritical reading

Web application honeypot recording interactions with simulated attack surfaces.

ApplicationHoneypot
Case study

Global Bank API Digital Twin

Review: Public pageCritical reading

CounterCraft describes a bank API digital twin that attracted an attack within 30 days; outcome attributed to the vendor.

ApplicationCloudDecoy
Service

Honeypot as a Service

Review: Public pageCritical reading

SaaS honeypot and deception-signal offering published by Sprint IT Solutions; operational terms await assessment.

NetworkHoneypot
Open software

Honeytrap

Review: RepositoryCritical reading

Open framework for building and operating honeypot sensors.

NetworkHoneypot
Product

InsightIDR Deception Technology

Review: Public pageCritical reading

InsightIDR capabilities for honeypots, honey users, files and credentials; documentation describes interaction alerts.

NetworkIdentityHoneypotHoneytoken
Service

Managed Targeted Threat Intel

Review: Public pageCritical reading

Acalvio datasheet describing cloud-hosted and managed external decoys with STIX intelligence sharing.

CloudDecoy
Framework or guide

MITRE D3FEND

Review: Public pageCritical reading

Knowledge base of defensive techniques with terminology related to decoys.

NetworkDecoy
Framework or guide

MITRE Engage

Review: Public pageCritical reading

Framework for planning and communicating denial, deception and adversary engagement.

NetworkCloudAdversary engagement
Open software

OpenCanary

Review: RepositoryCritical reading

Multi-protocol network honeypot for detecting suspicious interactions inside networks.

NetworkHoneypot
Product

Proofpoint Shadow

Review: Public pageCritical reading

Commercial identity protection component deploying endpoint deceptions to alert on lateral movement, according to Proofpoint.

EndpointIdentityDecoyHoneytoken
Case study

Riot Games / Tracebit

Review: Public pageCritical reading

Cloud deception adoption story published by the vendor Tracebit.

CloudHoneytoken
Product

ShadowPlex

Review: Public pageCritical reading

Commercial deception portfolio for identity, cloud and networks, according to Acalvio documentation.

IdentityCloudDecoyHoneytoken
Product

ShadowPlex Targeted Threat Intel

Review: Public pageCritical reading

Decoy-based targeted threat intelligence offering; Acalvio describes managed and appliance delivery.

CloudNetworkDecoyHoneytoken
Open software

SNARE

Review: RepositoryCritical reading

Reactive web honeypot component developed by the mushorg team.

ApplicationHoneypot
Open software

T-Pot

Review: RepositoryCritical reading

Platform combining multiple honeypots and analysis tools in one deployment.

NetworkIoTHoneypot
Product

The Platform

Review: Public pageCritical reading

Commercial platform using decoys for detection and threat intelligence, according to CounterCraft.

NetworkCloudDecoyAdversary engagement
Product

Thinkst Canary

Review: Public pageCritical reading

Commercial decoy product for detecting interactions with systems that appear legitimate.

NetworkIdentityHoneypotHoneytoken

Each record shows the source reviewed. Vendor claims and independent results are labeled separately.