Use decoy and deception to mess with hackers
Security experts say organisations should use decepetion and decoy data in efforts to kick attackers out of corporate networks.
The vendor-based security professionals said attackers spent big money on maintaining a foothold within networks.
"If you're Google, it doesn't matter how fast you run, the bear wants you," said nCircle chief research officer Tim Keanini. Mandiant CSO Richard Bejtlich said attackers invested a lot of resources into evading detection once networks were invaded. "Once they're in your enterprise, they have to be perfectly stealthy," he said. "But that's predicated on someone looking for them."