SC-35: Honeyclients
Generated
2019-05-20 15:48:11.984914
Status
Skipped
Statements
The information system includes components that proactively seek to identify malicious websites and/or web-based malicious code.
Additional Guidance
Honeyclients differ from honeypots in that the components actively probe the Internet in search of malicious code (e.g., worms) contained on external websites. As with honeypots, honeyclients require some supporting isolation measures (e.g., virtualization) to ensure that any malicious code discovered during the search and subsequently executed does not infect organizational information systems.