US security group issues global honey challenge

Patrick Gray,

18 February 2003 12:10 PM

Tags: honeypot, honeyd, spitzner, sun, us, honeynet, challenge, security

A United States-based security research group has launched an open challenge to the wider security community to help them improve their tool, honeyd, and is expecting plenty of input from Australian contributors.

The Centre for Information Technology Integration (CITI) based at Michigan University has been developing the honeyd utility, which is used for deploying honeypots, an increasingly popular security research tool.

Honeypots are monitored systems, sometimes with specific vulnerabilities, effectively set up to be attacked and compromised so that researchers may gain a better understanding of the modus operandi of malicious hackers.

Previous challenges similar in nature have seen a large Australian contingent take part.

Another research group, the Honeynet Project, has set down a number of challenges, including the "reverse challenge" a few months ago.

Entrants in the reverse challenge competed to analyse and reverse engineer a suspicious binary file captured by a honeypot belonging to the Honeynet Project.

Not only was the binary file written by an Australian malicious hacker, but the winning entrant was also Australian.

Lance Spitzner, head of the Honeynet Project and a lead security architect with Sun Microsystems, is on the judging panel of the CITI challenge. He told ZDNet Australia   he had been impressed by the skills of Australian security researchers, due to their contributions to previous challenges.

Spitzner noted that the author of the binary file the reverse challenge was analyzing had in fact entered the contest himself, finishing in the top 10.

He says that the object of the current honeyd challenge is to "...develop the awareness of honeyd and honeypots."

The security architect also hopes that the challenge will prompt further development of the honeyd software.

"Maybe someone will port it to Windows, or develop a GUI for it," he said.

The winner of the CITI honeyd challenge will win free registration at the CanSecWest security conference, and four nights accommodation. Other prizes include vouchers to Amazon.com and signed copies of Spitzner's new book "Honeypots: Tracking Hackers".

Advertisement

Talkback 0 comments


Latest Videos

ZDNet's CIO Vision Series

Department of Defence | Greg Farr, CIO (part two)

In the second part of his interview, Defence CIO Greg Farr talks about outsourcing, the skills crisis and reveals his most urgent IT priority.

Sponsored content

Power Centre - Content from our premier sponsors

Blogs

  • Angus Kidman I'm a celebrity, don't back me up
    Celebrity comes with its perks — free alcohol, better-looking partners, lots of holiday time — and disadvantages — constant media intrusions, being forced to appear in films with Eddie Murphy for the long-term good of your career, and having to do mindless radio interviews with angry men who've been awake since 4am.
  • Array Lies, damned lies and telco stupidity
    Earlier this month, Telstra put out a press release trumpeting that it's come up with a new phone coaching service to help people who are "bamboozled" by their mobiles. Another excellent example of wrongheaded thinking from the mobile industry.
  • Array Dear carriers: More walking, less talking
    Sometimes, a well-placed and well-timed letter can make all the difference. Other times, it can make no difference at all — and even hurt your case. This week's missive by the Competitive Carriers' Coalition, I would suggest, falls into the latter category.
  • More blogs »

Tags

Back to top

Featured