Defensive technique

Honeytokens and decoy credentials

Data, credentials or identifiers created to generate a signal when someone accesses or uses them.

Research question

What use should trigger an alert and how is legitimate use ruled out?

Context and method

Definitions and technical considerations should be checked against the primary source. Atlas records are a selection tagged with this topic; a matching tag does not demonstrate operational outcomes.

Cross-reference

This topic across source types

These counts describe tagged Atlas records, not the worldwide number of studies or offerings.

Linked library

Associated records

20 tagged records
Open software2026

Cyber Deception Playground

Review: RepositoryEditor contribution

Open Docker Compose lab with vulnerable services, configurable deception levels, monitoring and an attacker environment for controlled training and research.

NetworkApplicationHoneypotDecoy
Community or education2026

NeroSwarm Research Access Program

Review: Public page

September 2026 program offering time-limited deception-platform access for non-commercial research; eligibility is listed at the source.

NetworkHoneypotHoneytoken