FortiDeceptor
The FortiDeceptor demo is an opportunity to gain insight into how the tool simulates target systems and detects advanced cyber threats, as well as giving attendees a better understanding of how FortiDeceptor contributes to increased security and threat monitoring.
The talk showcased a solution that exposes an attacker on the network already in the preparation phase – before a malicious incident occurs. In a demonstration with real devices, we saw both the security tool’s perspective and the attacker’s own steps. The goal is early detection and automated response across IT and OT environments. “Decoys” were added to the test topology – fake services and devices that lure out and reveal the attacker’s movement. The solution records early steps such as discovering active IP addresses or testing open ports and attaches context about where the reconnaissance is coming from. This makes it possible to discern what the attacker is trying to accomplish, even though no damage has been done yet. The operator thus gets an early warning and can prepare defensive measures.Decoys in the network: early warning