Why do so many Active Directory breaches go undetected early?
Because the first attacker actions use native Kerberos and LDAP traffic that looks completely legitimate.
In our latest research, we show how to flip that dynamic using a simple idea: tripwire identities in Active Directory.
These are purpose-built accounts that are never used by people or applications. Any interaction with them provides a clear signal that cuts through the noise, detected immediately through native Domain Controller logs.
The result is early warning during reconnaissance and credential access, not after escalation.
If AD is mission-critical in your environment, this walkthrough shows a low-friction way to reduce attacker dwell time: horizon3.ai/attack-research/….
#ActiveDirectory#DeceptionTech#pentesting
What if you could turn the tables on attackers and use their own tactics against them?
In this 20-min lightning talk at the upcoming AWS ReInvent, learn how deception is the ultimate tool to make attackers miserable, hitting them where it hurts:
💰 Quantitative Cost: Tools, infrastructure, opportunity cost.
🧠 Psychological Cost: Frustration, confusion, stress.
Don't miss "Make Attackers Cry: Outsmart them with Deception"!
Find the details in the re:Invent catalog! registration.awsevents.com/f…#DeceptionTech#WAF#InfoSec#AWSreinvent
ROOTCON 19 SPEAKER ALERT
Vismit Rakhecha
With over 13 years of experience in cybersecurity, Vismit Rakhecha is a seasoned professional currently serving as a Principal Information Security Engineer in the healthcare sector. His expertise is reflected in published white papers such as “Exploring Potential Crimes Enabled by 3D Printers in Healthcare”, “Digital Mafia ~ Decrypted”, and “Wardriving’s Impact on Corporate Espionage and Prevention Strategies.” Vismit has also shared his research on global stages, including Hakon, CSA, OWASP, and HackTech.
Check out his talk, AstroTrap: A Deceptive Satellite Gateway Simulation
rootcon.org/html/rc19/talks#…#ROOTCON#RC19#CyberSecurity#HackingConference#SatelliteSecurity#ThreatIntelligence#DeceptionTech
Introducing HoneypotGPT™: The First AI That Baits Hackers with Bad Memes and Even Worse Elevator Music
We’re proud to unveil HoneypotGPT™, our all-new AI-driven decoy that keeps cybercriminals stuck in a loop of cringe-worthy memes, questionable dad jokes, and non-stop elevator tunes. The moment a attacker takes the bait, we auto-generate puns so brutal they’ll beg for a 404 error!
We know it sounds too good to be true—after all, it’s April Fools’, right? But seriously, HoneypotGPT™ is 100% real… or is it?
@Acalvio No Tricks, Simply Real Deception!
Celebrating #CyberDeceptionDay#AprilFools#Cybersecurity#DeceptionTech
#ICYMI 🧑💻You can download our latest #ebook and learn about defending your organization from stealthy identity threats and regaining the defender’s advantage through proactive defense based on honeytokens. t.ly/-R023 via @AcalvioTech#deceptiontech#identitysecurity
ALT The Honeytokens for ITDR eBook’s chapters include:
• Understanding the Identity Architecture Landscape
• The Evolving Identity Threat Landscape
•The Limitations of Traditional Security in Identity Protection
• Bridging the Detection Gap with ITDR
• Implementing Deception for Robust Identity Protection
• The role of Identity Protection in Zero Trust
#DeceptionTech … an underrated discipline and one of my favorites
(I think I’ll think about a tweet that lists my BUY, HOLD and SELL cyber sec disciplines and deception technology is def a strong buy)
#Deception technology encompasses several interrelated components that protect the #network, from typical decoys to concealment and #attack redirection. Use this checklist to learn about what the ideal deception system should encompass: ow.ly/ZZsQ50K6RUz#deceptiontech