Honeypots are bogus subnetworks or knowledge storages that security teams deploy as decoys. These network segments have intentional flaws that catch the attention of attackers. Typical users don't obtain honeypots, so any activity in that network area is definitely an indicator of 3rd-bash existence. Discover the 3rd layer from https://www.researchgate.net/publication/365308473_Development_of_Cyber_Attack_Model_for_Private_Network