IDS mailing list archives
Honeypots vs IDS
From: Lance Spitzner <lance () honeynet org>
Date: Wed, 30 Apr 2003 16:31:15 -0500 (CDT)
Lots of attention has been given to the research capabilities of honeypots, but very little has been given to the detection capabilities of honeypots, especially how they compare to IDS. Hope this can develop some awareness :) Honeypots: Simple, Cost-Effective Detection http://www.securityfocus.com/infocus/1690 -- Lance Spitzner http://www.tracking-hackers.com ------------------------------------------------------------------------------- Can you respond to attacks based on attack type, severity, source IP, destination IP, number of times attacked, or the time of day an attack occurs? No? No wonder why you're swamped with false positives! Download a free 15-day trial of Border Guard and watch your false positives disappear. http://www.securityfocus.com/StillSecure-focus-ids2 -------------------------------------------------------------------------------
Current thread:
- Honeypots vs IDS Lance Spitzner (May 04)