Tar pitting automated attacks

Ted Mittelstaedt tedm at toybox.placo.com
Thu Sep 9 21:12:54 PDT 2004



> -----Original Message-----
> From: owner-freebsd-questions at freebsd.org
> [mailto:owner-freebsd-questions at freebsd.org]On Behalf Of Mike Hauber
> Sent: Thursday, September 09, 2004 8:44 AM
> To: freebsd-questions at freebsd.org
> Subject: Re: Tar pitting automated attacks
> 
> 
> How difficult would it be to have a "dummy" system setup on 
> the LAN where incoming SSH could be transparently routed 
> to.  In fact (and even the idea gives me the creeps), how 
> difficult would it be to change "root" to something else, 
> and then create a dummy root account.  I mean, if one is 
> attempting to get a cracker to waste his time, then why not 
> wet his whistle and let him think he's actually getting 
> somewhere?
> 
> I don't know anything about this kind of thing (I'm just not 
> devious enough, I guess).  How should I go about googling 
> this to learn more?  Is there a term for it?
> 

search the term "honeypot servers"

Ted



More information about the freebsd-questions mailing list