BSidesCharm2025

Cyber Deception in GCP with Generative Traps
2025-04-12 , Track 2

Cyber deception is a ruse to mislead or disrupt adversaries by exploiting their cognitive biases. Traps— lures that detect adversary interaction— reinforce the seams in detection surfaces monitored by security operations teams. But deception management and orchestration is painful in practice. Cloud environments provide an opportunity to overcome some of these pitfalls.


This talk defines practical cloud deception stratagems for the Google Cloud Platform. Each stratagem is motivated with the release of paltergeist, an open-source, deception management tool that programmatically generates cloud-native traps tailored to an organization's target personas, orchestrates engagements with specific stratagems, and sets up observability for detections