Labyrinth Development
Labyrinth Deception Platform Case Study
Pages
2
Time to read
2 mins
Publication
Language
English
Pages
2
Time to read
2 mins
Publication
Language
English
This case study details the implementation of the Labyrinth Deception Platform for a road management company. The primary objective was to enhance the visibility of attackers' actions concerning various web applications and services within the company's infrastructure. The infrastructure included up to 750 LAN hosts and 100 VLANs, with critical assemblies dispersed geographically. The deployment involved creating dynamic emulations of existing web interfaces, which contained various vulnerabilities to attract potential attackers. Seeder agents were utilized to distribute file baits across real hosts, leading to the establishment of over 55 honeynets. The network decoys were particularly focused on the DMZ segment, where they were regularly regenerated to maintain a dynamic environment. Following the deployment, penetration testing confirmed a significant increase in the detection of intranet events, showcasing the system's effectiveness in distracting attackers and revealing shadow IT assets. The findings also contributed to improvements in external perimeter protection settings.