24
Honeynet Project Overview Julia Cheng Director, Honeynet Board of Directors [email protected]

The Honeynet Project Introduction

Embed Size (px)

Citation preview

Page 1: The Honeynet Project Introduction

Honeynet Project Overview

Julia ChengDirector, Honeynet Board of Directors

[email protected]

Page 2: The Honeynet Project Introduction

Who is the Honeynet Project?

• US-based non-profit (501c3) computer

security research organization

• Founded in 2000 by Lance Spitzner

• Global membership of volunteers with

diverse skills and experiences

Page 3: The Honeynet Project Introduction

Who is the Honeynet Project?

(Cont.)

• Partially funded by sponsors

• We are not selling our products or service

• All we produce is open source and freely

available.

Page 4: The Honeynet Project Introduction

Who is the Honeynet Project?

(Cont.)

• Mission: ¨Learn the tools, tactics and motives involved

in computer and network attacks, and share

the lessons learned¨

• Goal: Improve security of the InternetThe Honeynet Project is a platform that

brings together security researchers and

likeminded people to accomplish this goal.

Page 5: The Honeynet Project Introduction

Contributors

Structure

Chapters

Full Members

43 International Chapters

187 Contributor

55 Full Members

Page 6: The Honeynet Project Introduction

Contributors

Structure

Board of

Directors

Chapters

Full Members

elect

Committees

Julia Cheng, National Cheng Kung University

Thorsten Holz, Ruhr-University Bochum

Jose Nazario, Arbor Networks

Lance Spitzner, SANS Institute

Christian Seifert, Microsoft Bing

David Watson, Isotoma Ltd.

Tillmann Werner, Kaspersky Labs

Page 7: The Honeynet Project Introduction

Contributors

Structure

Board of

Directors

Officers

Chapters

Full

Members

elect appoint

Committees

Guillaume Arcas, CPRO, Security Warrior

Consulting

Dave Dittrich, CLEO, University of Washington

Max Kilger, CMO, Experian Simmons

Christian Seifert, CEO, Microsoft Bing

Faiz Shuja, CIO, Cyber Internet Services (Pvt) Ltd

Sebastien Tricaud, CTO, Picviz Labs

David Watson, CRO, Isotoma Ltd.

Page 8: The Honeynet Project Introduction

Contributors

Structure

Board of

Directors

Officers

Chapters

Full Members

elect appoint

Committeesform

Page 9: The Honeynet Project Introduction

What do we do? Awareness

• Raise awareness of the threats that exist

• Honeynet Project Blog/ Twitter feed/ Social

Media Groups

• KYE/KYT whitepaper series

• Google Summer of Code

Page 10: The Honeynet Project Introduction

http://www.honeynet.org/papers

Page 11: The Honeynet Project Introduction

Google Summer of Codeall for the love of code

• Global program that

offers student

developers stipends to

write code for various

open source software

projects

Page 12: The Honeynet Project Introduction

Google Summer of Codeall for the love of code

http://www.honeynet.org/gsoc/slots

Page 13: The Honeynet Project Introduction

What do we do? Information

• For those already aware, teach and

inform about latest threats

• Speaking engagements at conferences/

workshops and at invitation-only events

• Public Honeynet Project Security Workshop

• Forensic Challenges

• Capture-the-flag events

Page 14: The Honeynet Project Introduction
Page 15: The Honeynet Project Introduction
Page 16: The Honeynet Project Introduction

Annual Workshop (Paris 2011)

Page 17: The Honeynet Project Introduction

http://www.honeynet.org/challenges

Page 18: The Honeynet Project Introduction

What do we do? Research

• Give organizations the capabilities to

learn more on their own

• Develop and deploy honeypot and security

technology

• Release developed tools under open source

license freely on the web

• Study captured data in the wild with sensors

around the world

Page 19: The Honeynet Project Introduction

http://www.honeynet.org/project

Page 20: The Honeynet Project Introduction

Recently Research &

Activities

• Hpfeed: Live data feed sharing within the

Honeynet Project and also with external

parties.

• Data visualization on big data and diverse

sources of data

• Android malware static and dynamic analysis

• Low-interaction client honeypot

Page 21: The Honeynet Project Introduction

2012 The Honeynet Project

Security Workshop

@ Facebook Headquarters

2012/03/19 ~ 2012/03/20

San Francisco, CA USA

Page 22: The Honeynet Project Introduction

How to Get Involved ?

• Open to anyone

• University students and professors, professionals,

enthusiastic individuals

• Become involved

• Find a local chapter (E.g. Taiwan Honeynet Chapter)

• Contact organization directly, become affiliated

• For students: GSoC – http://code.google.com/soc/

Page 23: The Honeynet Project Introduction

Where are we?

• Contact of follow us:• Blog at http://www.honeynet.org

• An official Project Twitter feed @projecthoneynet

• Facebook group 'The Honeynet Project'

• LinkedIn group 'The Honeynet Project'

• “Old school” public mailing list, still at SecurityFocus

• #honeynet-project on irc.freenode.net (new, general

public enquiries)

Page 24: The Honeynet Project Introduction

Q & A

Julia ChengDirector, Honeynet Board of Directors