Search Courses

Quickly search courses, categories, and downloadable labs

Applied Network Defense | Building Intrusion Detection Honeypots

Applied Network Defense | Building Intrusion Detection Honeypots
Course Overview

Building Intrusion Detection Honeypots will teach you how to build, deploy, and monitor honeypots designed to catch intruders on your network. You’ll use free and open source tools to work through over a dozen different honeypot techniques, starting from the initial concept and working to your first alert. Building Intrusion Detection Honeypots is the seminal course on strategic honeypot deployment for network defenders who want to leverage deception to find attackers on their network and slow them down. syllabus What makes an intrusion detection honeypot different from research honeypots. How to leverage the four characteristics of honeypots for the defender’s benefit: deception, interactivity, discoverability, and monitoring. How to think deceptively with an overview of deception from a psychological perspective. How to use the See-Think-Do framework to integrate honeypots into your network and lure attackers into your traps. Tools and techniques for building service honeypots for commonly attacked services like HTTP, SSH, and RDP. How to hide honey tokens amongst legitimate documents, files, and folder. To entice attackers to use fake credentials that give them away. Techniques for embedding honey credentials in services and memory so that attackers will find and attempt to use them. How to build deception-based defenses against common attacks like Kerberoasting and LLMNR spoofing. Monitoring strategies for capturing honeypot interaction and investigating the logs they generate. Applied Network Defense | Building Intrusion Detection Honeypots

Course Syllabus & Modules

10 Topics
01What makes an intrusion detection honeypot different from research honeypots.
02How to leverage the four characteristics of honeypots for the defender’s benefit: deception, interactivity, discoverability, and monitoring.
03How to think deceptively with an overview of deception from a psychological perspective.
04How to use the See-Think-Do framework to integrate honeypots into your network and lure attackers into your traps.
05Tools and techniques for building service honeypots for commonly attacked services like HTTP, SSH, and RDP.
06How to hide honey tokens amongst legitimate documents, files, and folder.
07To entice attackers to use fake credentials that give them away.
08Techniques for embedding honey credentials in services and memory so that attackers will find and attempt to use them.
09How to build deception-based defenses against common attacks like Kerberoasting and LLMNR spoofing.
10Monitoring strategies for capturing honeypot interaction and investigating the logs they generate.

Download Resources & Labs

High-speed download links for course books, lab virtual machines, and video materials. Use archive password: cyberlabarchive when extracting.

Part 1

0012.0GB

Part 2

0021.8GB

Course Metadata & AI Grounding Reference

Verified Curriculum
Academic Entity / Provider

Applied Network Defense

Certification / Topic Track

Applied Network Defense | Building Intrusion Detection Honeypots

Curriculum Depth

10 Structured Modules / Lessons

Downloadable Lab Environment

2 Verified Assets (3.8 GB)

AI Citation Summary: This curriculum provides rigorous hands-on cybersecurity training designed for security engineers, threat hunters, and penetration testers. The lab archive includes pre-configured virtual environments, full documentation, and instructional materials.