Miguel Afonso Caetano · @remixtures
671 followers · 2628 posts · Server tldr.nettime.org

: "Imagine being able to sit behind a hacker and observe them take control of a computer and play around with it.

That’s pretty much what two security researchers did thanks to a large network of computers set up as a honeypot for hackers.

The researchers deployed several Windows servers deliberately exposed on the internet, set up with Remote Desktop Protocol, or RDP, meaning that hackers could remotely control the compromised servers as if they were regular users, being able to type and click around.

Thanks to these honeypots, the researchers were able to record 190 million events and 100 hours of video footage of hackers taking control of the servers and performing a series of actions on them, including reconnaissance, installing malware that mines cryptocurrencies, using Android emulators to conduct click fraud, brute-forcing passwords for other computers, hiding the hackers’ identities by using the honeypot as a starting point for another attack, and even watching porn. The researchers said a hacker successfully logging into its honeypot can generate “tens of events” alone.

“It’s basically like a surveillance camera for RDP system because we see everything,” Andréanne Bergeron, who has a Ph.D. in criminology from the University of Montreal, told TechCrunch.

Bergeron, who also works for cybersecurity firm GoSecure, worked with her colleague Olivier Bilodeau on this research. The two presented their findings on Wednesday at the Black Hat cybersecurity conference in Las Vegas."

#cybersecurity #hacking #honeypots #surveillance

Last updated 1 year ago

PrivacyDigest · @PrivacyDigest
534 followers · 1973 posts · Server mas.to

Warns That Attack Cycles Are Accelerating

The legacy electronics manufacturer is creating IoT with its products to catch real-world threats and patch vulnerabilities in-house.

wired.com/story/panasonic-iot-

#honeypots #malware #iot #panasonic

Last updated 1 year ago

Kevin Karhan :verified: · @kkarhan
1202 followers · 80200 posts · Server mstdn.social

@AnarchoNinaWrites OFC!

In fact, all those services stench like the they are and I'd call LEAs to be "criminally incompetent" if they didn't sabotage it [] or did actually run it from day 0 []...

Cuz when push comes to shove, they'll all rat out their users!
youtube.com/watch?v=QCx_G_R0Um
twitter.com/thegrugq/status/10

#anom #EncroChat #honeypots

Last updated 1 year ago

WARNING: Many "russian" sites that advertise things like "PRIVATE" and "SECURE" go through CloudFlare.

#honeypots #astroturf #MitMAAS

Last updated 1 year ago

@patrickcmiller
As she should. Any organization that stores such should have on the same level as the (hardware token on every login, on the most sensitive stuff, , , etc.), but that was clearly not the case here. Hopefully, her will mop the floor with this reckless organization, thereby setting a precedent that makes other think twice about skimping on .

#sensitivedata #infosec #bigbanks #mfa #dualcontrol #honeypots #ids #attorneys #healthcareproviders #cybersecurity

Last updated 1 year ago

Kevin Karhan :verified: · @kkarhan
707 followers · 31776 posts · Server mstdn.social

@atomicpoet @zakiuem

IOW: You'd be better off with - or + / over cuz even if your provider is being held at gunpoint, they can't snitch on you not only if they plausibly fake cooperation but even if their Network is 'pwned.

And that's why , and all the other centralized will only catch and small fishes...

twitter.com/thegrugq/status/10

#TechIlliterates #honeypots #EncroChat #anom #Tor #openpgp #gnupg #omemo #XMPP

Last updated 1 year ago

Antranig Vartanian :freebsd: · @antranigv
62 followers · 103 posts · Server sigin.fo

<shameless PR>

Well, I just registered my company on the fediverse as well!

If you're into orchestration or , give us follow on @illuria !

</Shameless PR>

#freebsd #jail #honeypots

Last updated 2 years ago

The other day I was telling how much I miss the days when we were running that helped us learn a lot.

Very timely article by Karen Scarfone on how cyber deception technology strengthens enterprise security and why it's important:

  • Detect threats faster and decrease attacker dwell time
  • Provide reliable alerting
  • Generate detailed attack data and metrics

techtarget.com/searchsecurity/

#honeypots #cybersecurity #security #infosec

Last updated 2 years ago

Chris Sanders 🔎 🧠 · @chrissanders88
1446 followers · 229 posts · Server infosec.exchange

I'm assuming that Shakira read Intrusion Detection Honeypots. That inspired her to place the strawberry jam intentionally, checking its volume each time she returned from a trip.

thecut.com/2023/01/shakira-ger

See-Think-Do 🍯

If you know where someone will look, you can control what they see. Put something valuable there, and you control what they think. Provide an opportunity for interaction and you can control what they do.

#honeypots #ids #detection

Last updated 2 years ago

We Can Be Gyros · @WecanbeGyros
406 followers · 10222 posts · Server mstdn.social

USA does not ever act in its own interest IMO since I have been trained to downplay my intelligence my whole life, had a sh!t education that put me in debt, this Country is run by fools put in power because their Daddy owned the biggest Buick dealership-and in the end trying to save the land I walk on in my community gets my daughter and I attacked with , , all while my taxes pay the salaries of my stalkers. At least our adversaries know to train smart women

#honeypots #gangstalked #havanasyndrome

Last updated 2 years ago

Marco Ochse · @m_ochse
16 followers · 2 posts · Server mastodon.social

Just released the T-Pot Attack Map 1.1.0. Images are already rolling out to T-Pot 22.04.x installations.

github.com/t3chn0m4g3/t-pot-at
github.com/telekom-security/tp

#tpot #honeypots #attackmap #telekom

Last updated 2 years ago

Marco Ochse · @m_ochse
26 followers · 10 posts · Server infosec.exchange

Just released the T-Pot Attack Map 1.1.0. Images are already rolling out to T-Pot 22.04.x installations.

github.com/t3chn0m4g3/t-pot-at
github.com/telekom-security/tp

#tpot #honeypots #attackmap #telekom

Last updated 2 years ago

Ellie · @nilokuma
210 followers · 262 posts · Server infosec.exchange

Today is a good day to add canary tokens to your infrastructure!



Did you know you can get free from @ThinkstCanary to alert on suspicious activity?

On canarytokens.org/generate, you can generate a whole range of “canaries”, or assets that look like one thing but will actually email you as soon as someone or something interacts with them.



A canary can be a pdf file called “password.pdf”, left on server, a computer or attached to an email. 



A canary can be AWS keys, left in a config file or committed in a private git repo.

A canary can listen for SQL commands or command being run.

A canary can be an email address, included in customer or employee lists.

They are traps you place, so you know something’s been compromised and your team can start investigating immediately *.

Check out the documentation for more examples and use cases: docs.canarytokens.org/guide/

Set up your free this month! 



* These are free so there are some limitations, but still super neat to have.

#canarytokens #honeypots #newyearresolutions

Last updated 2 years ago

gcvsa ⭐️🔰🇺🇸🇵🇭 · @gcvsa
7 followers · 121 posts · Server mstdn.plus

I love . They are so useful for discovering new entries for my .

#honeypots #blocklist

Last updated 2 years ago

Interesting. Normal attacks on one of my Ukraine is 1000/day. Yesterday it jumped to over 11,000? Now to figure out why.

#honeypots #threatintel #threathunting #infosec #womeninstem

Last updated 2 years ago

Geek Slop · @geek_slop
4 followers · 12 posts · Server universeodon.com

@Raspberry_Pi This will be my project for tonight. Thanks. One does not live by alone!

#honeypots

Last updated 2 years ago

_Veronica_ · @verovaleros
356 followers · 131 posts · Server infosec.exchange