Introduction
FortiDeceptor DaaS Cloud is a cloud-based platform providing cyber Deception-as-a-Service.
Cyber deception has emerged as an effective and offensive threat detection technology that offers protection for IT/IoT/OT networks and infrastructure. Deception technology can be used across enterprise networks by placing decoys, deception tokens (breadcrumbs), and lures.
FortiDeceptor DaaS provides early detection and isolation of sophisticated human and automated attacks by deceiving attackers into revealing themselves.
Key features:
- FortiDeceptor DaaS provides an intuitive method to configure and monitor deception assets with Wizard-based deployment. FortiDeceptor creates Decoys based on default templates. These Decoys span several OS types, including Windows Desktop/Server, Linux, VPN, IoT, and OT. Once deployed, it automatically performs asset (active/passive) discovery, creates asset inventory, and recommends optimized decoy placement.
- Deployment deception decoys and lures from the cloud platform communicate directly to on-premise or cloud networks.
- FortiDeceptor DaaS Captures and analyzes malware that is detected by the Deception decoys and provides detailed forensics, collects IOCs and TTPs.
- Infected endpoints that are detected by the Deception decoys can be quarantined away from the production network.
- Integration with Fortinet Security Fabric and third-party security controls like FW, SIEM, SOAR, EDR, NAC, and SANDBOX.