<span id="hs_cos_wrapper_post_body" class="hs_cos_wrapper hs_cos_wrapper_meta_field hs_cos_wrapper_type_rich_text" style="" data-hs-cos-general-type="meta_field" data-hs-cos-type="rich_text" ><p><u>DShield</u> has a project called the <a href="https://www.dshield.org/diary/ISC+Feature+of+the+Week+The+404Project/12415">404Project</a>. The goal of the project is to track attackers looking to compromise web pages.</p> <p>To do this, they've started selling a <a href="https://www.raspberrypi.org/">Raspberry Pi</a> <a href="https://en.wikipedia.org/wiki/Honeypot_(computing)">Honeypot</a> to hook into your network. The alternative, is to embed one of a selection of code snippets into your website's 404 error page. These honey pots track hits on the 404 page. Hackers generate these hits when scanning for vulnerable utilities common to various web hosts. When the 404Project detects these scans, it records the attacker's IP and uploads it to DShield.</p> <!--more--> <p>Then, DShield disseminates their catalog of suspicious IPs to the security community, including ThreatSTOP.</p> <p><img src="https://info.threatstop.com/hubfs/404project-1.jpg" alt="404project-1.jpg" width="320" style="width: 320px; display: block; margin-left: auto; margin-right: auto;"></p> <p>Turning on the DShield 404Project target in your ThreatSTOP account adds the data to your firewall. This increases the efficacy of your firewall against website hacking attempts.</p> <p>One of the long standing goals for ThreatSTOP has been to create not just a network security tool for blocking and tracking malicious users. It has also been to create a symbiotic community within the security industry, through sharing data about attack sources, and receiving the same in return. By doing this, the Internet becomes stronger through herd immunity. The excitement for this addition to ThreatSTOP, and the security community's toolkit is high!</p> <p>To enable <strong>DShield’s 404Project</strong> data in your firewall turn on the<strong> <span><span>404 project by Dshield - IPs</span></span></strong>&nbsp;in the ThreatSTOP portal.</p> <p>If you don’t have a ThreatSTOP account, . <span>If you do have a ThreatSTOP account, instructions to add targets to </span><a href="https://docs.threatstop.com/portal_policies.html">DNS</a><span> or </span><a href="https://docs.threatstop.com/portal_policies.html">IP</a><span> Defense policies are available on the ThreatSTOP Documentation Hub. Or, contact our&nbsp; team.</span></p></span>