Loading...
Honeypots & Deception tools for Attack Detection: the Honeypots & Deception options most relevant when Attack Detection is the priority, compared side by side so you can shortlist faster. Filter by pricing or specialization. Independent and vendor-neutral: our scores and rankings are earned, never bought — sponsored placement is always labeled.
We cover 37 cybersecurity tools
AI-powered deception platform that predicts, traps, and neutralizes attackers.
Open-source canary/deception platform for detecting lateral movement on Linux networks.
Honeypot platform deploying network decoys to detect intrusions with zero false positives
Cyber deception platform for early threat detection, attacker engagement & response.
Network deception tool deploying lures to detect & analyze advanced threats.
SaaS cyber deception platform deploying decoy sensors to detect attackers.
Active Directory deception technology for threat detection and response
Deception platform using external-facing decoys for threat intel & recon detection
AI-based deception platform for collecting cyber threat intelligence
TANNER is a remote data analysis service that evaluates HTTP requests and generates responses for SNARE honeypots while emulating application vulnerabilities.
An open source honeypot for NoSQL databases with support for Redis and additional features for detecting attackers and logging attack incidents.
Honeytrap is a low-interaction honeypot and network security tool with various modes of operation and plugin support for catching attacks against TCP and UDP services.
GridPot is a honeypot framework that combines GridLAB-D, Conpot, and libiec61850 to simulate industrial control systems and detect attacks on power grid infrastructure.
A nodejs web application honeypot designed for small environments like Raspberry Pi to capture and analyze malicious web-based attacks.
Hived is a honeypot tool for deceiving attackers and gathering information.
A honeypot that simulates an exposed networked printer using PJL protocol to capture and log attacker interactions through a virtual filesystem.
A simple Telnet honeypot program that logs login attempts and credentials from botnet attacks, specifically designed to track Mirai botnet activity.
HoneyFS is an LLM-powered honeypot tool that generates realistic fake file systems using GPT-3.5 to deceive attackers and enhance security analysis.
A Go-based honeypot that mimics Intel's AMT management service to detect and log exploitation attempts targeting the CVE-2017-5689 firmware vulnerability.
A honeypot designed to detect and analyze malicious activities in instant messaging platforms.
Ghost USB Honeypot emulates USB storage devices to detect and analyze malware that spreads via USB without requiring prior threat intelligence.
BW-Pot is an interactive web application honeypot that deploys vulnerable applications to attract and monitor HTTP/HTTPS attacks, with automated logging to Google BigQuery for analysis.
Honeyntp is an NTP honeypot and logging tool that captures NTP packets into a Redis database to detect DDoS attacks and monitor network time protocol traffic.