Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Use a Honeypot, Go to Prison?
Kevin Poulsen, SecurityFocus 2003-04-16

SAN FRANCISCO--Using a honeypot to detect and surveil computer intruders might put you on the working end of federal wiretapping beef, or even get you sued by the next hacker that sticks his nose in the trap, a Justice Department attorney warned Wednesday.

Comments Mode:
Use a Honeypot, Go to Prison? 2003-04-17
Mark Rasch (2 replies)
Use a Honeypot, Go to Prison? 2003-04-19
Honeypots are for losers anyhow
Use a Honeypot, Go to Prison? 2003-04-17
Shivan (1 replies)
re: Logging 2003-04-22
Anonymous
Use a Honeypot, Go to Prison? 2003-04-17
Steve K.
Use a Honeypot, Go to Prison? 2003-04-17
Simon Edwards (1 replies)
Use a Honeypot, Go to Prison? 2003-04-17
Anonymous
Use a Honeypot, Go to Prison? 2003-04-17
Anonymous (2 replies)
Use a Honeypot, Go to Prison? 2003-04-17
Anonymous (1 replies)
Use a Honeypot, Go to Prison? 2003-04-18
Anonymous (1 replies)
Use a Honeypot, Go to Prison? 2003-04-18
Anonymous
Use a Honeypot, Go to Prison? 2003-04-17
Anonymous
Use a Honeypot, Go to Prison? 2003-04-17
Lockdown
Use a Honeypot, Go to Prison? 2003-04-17
Anonymous (1 replies)
Use a Honeypot, Go to Prison? 2003-04-17
yumadome (at) hotmail (dot) com [email concealed]
Use a Honeypot, Go to Prison? 2003-04-17
Anonymous
What I find amazing is that the DOJ, isn't taking steps to change the law to explicitly allow private honeypots and other detection methods as a means to detect and prevent hacking.

Isn't the DOJ supposed to be working with the homeland security department to find cybercrimes?

A banner stating the machine is monitored is probably a good idea, another tack might be to pay for and place a small public notice in one of the local newspapers stating that you monitor all machines at domain xyz...

It also appears that in the simplest case, interception was defined as a hacker communicating with your honeypot -- then your viewing of the logfiles, separating the owner of the honeypot and the physical machine. Why isn't the same twisted logic applied to the return packets sent to the hackers PC? If they view the results of the packets, should not they considered a third party in the communication between your honeypot and the hackers PC? Bizarre!.

There are video camera?s at all ATM?s, on many buildings, lobbies, and most small food market stores. I don?t remember seeing signs posted warning that anybody coming within 30 feet might be recorded. The recording might include both voice and video of their mouth (lips) and other activities.

Nor, do I remember seeing on the back of any pro-sports ticket that a disclaimer that I might be displayed on national TV and my voice may be heard by third parties.

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/articles/4004/19462#19462
Use a Honeypot, Go to Prison? 2003-04-18
Anonymouse
Use a Honeypot, Go to Prison? 2003-04-18
Anonymous (1 replies)
Use a Honeypot, Go to Prison? 2003-04-18
Anonymous
Use a Honeypot, Go to Prison? 2003-04-18
Sectech
Use a Honeypot, Go to Prison? 2003-04-18
JMcDaniel
Use a Honeypot, Go to Prison? 2003-04-19
Anonymous
Use a Honeypot, Go to Prison? 2003-04-19
Anonymous
Use a Honeypot, Go to Prison? 2003-04-19
Madclicker
Use a Honeypot, modify /etc/motd 2003-04-21
Anonymous
Use a Honeypot, Go to Prison? 2003-04-21
Anonymous
Honeypot vs. Automobile 2003-04-21
Anonymous
fbi/cia/nsa scared of honeypots 2003-04-21
Anonymous
Use a Honeypot, Go to Prison? 2003-04-22
skulls and bones
Use a Honeypot, Go to Prison? 2003-04-22
Anonymous







 

Privacy Statement
Copyright 2009, SecurityFocus