A security analyst created a fake account and saved the password in a non-readily accessible directory in a spreadsheet. An alert was also configured to notify the security team if the spreadsheet is opened. Which of the following best describes the deception method being deployed?
Choose an answer
Tap an option to check your answer.
Correct answer: Honeyfile.
Why this is the answer
A honeyfile is a decoy file designed to detect unauthorized access. In this scenario, the security analyst created a fake account and saved its password in a spreadsheet, then configured an alert for when the spreadsheet is opened. This makes the spreadsheet a honeyfile, as its sole purpose is to lure attackers and signal a breach attempt. A honeypot is a more general term for a system designed to attract and trap attackers, often a server or network segment. A honeytoken is a decoy piece of data, like a fake database record or API key, but not necessarily a file. A honeynet is a network of honeypots used to study attacker behavior.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed