Messing With Portscans With Honeyports (Cyber Deception)
ID: cfe98cde-02ae-51f0-a19a-2269fe27a029
STIX ID: report--cfe98cde-02ae-51f0-a19a-2269fe27a029
Feed Name: Black Hills Infosec Blog
**Executive summary:** This transcript documents an instructional walkthrough of HoneyPorts, a defensive honeypot/annoyance tool that listens on configurable TCP ports and automatically adds iptables rules to block IPs that complete a connection; it covers setup, running as root, demonstration with netcat, rule inspection and flushing, and addresses spoofing/DoS concerns by explaining TCP three-way handshake sequence number protections.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
