From the course: CompTIA Cybersecurity Analyst+ (CySA+) (CS0-003) Cert Prep: 1 Security Operations

Unlock the full course today

Join today to access over 23,000 courses taught by industry experts.

Deception technologies

Deception technologies

- [Instructor] Cybersecurity analysts play a cat and mouse game with attackers, seeking to prevent them from gaining unauthorized access to a network. Deception technologies can be a powerful tool in this battle, allowing analysts to stay one step ahead of attackers. Let's take a look at a few common deception technologies. Analysts use a wide variety of security monitoring systems to detect unauthorized activity on networks, systems, and applications. However, it can often be difficult to tell the difference between legitimate traffic and activity that is part of an attack. Darknets are designed to assist with making this distinction. Administrators may set aside portions of their normal IP address space for use as a darknet. No legitimate systems use those addresses, therefore, if a monitoring system detects any activity headed to those addresses, it's very likely that it is an attacker performing network…

Contents