{"id":13482196,"url":"https://github.com/mzweilin/ipv6-attack-detector","last_synced_at":"2025-03-27T12:32:34.812Z","repository":{"id":149630009,"uuid":"4221008","full_name":"mzweilin/IPv6-Attack-Detector","owner":"mzweilin","description":"Google Summer of Code 2012 project, supported by The Honeynet Project organization.","archived":false,"fork":false,"pushed_at":"2020-07-30T17:03:36.000Z","size":264,"stargazers_count":38,"open_issues_count":0,"forks_count":12,"subscribers_count":9,"default_branch":"master","last_synced_at":"2024-05-23T03:18:52.045Z","etag":null,"topics":[],"latest_commit_sha":null,"homepage":null,"language":"Python","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":null,"status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/mzweilin.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":null,"code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null}},"created_at":"2012-05-04T02:44:23.000Z","updated_at":"2024-05-16T14:38:03.000Z","dependencies_parsed_at":"2024-01-03T04:02:43.133Z","dependency_job_id":null,"html_url":"https://github.com/mzweilin/IPv6-Attack-Detector","commit_stats":null,"previous_names":[],"tags_count":1,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/mzweilin%2FIPv6-Attack-Detector","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/mzweilin%2FIPv6-Attack-Detector/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/mzweilin%2FIPv6-Attack-Detector/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/mzweilin%2FIPv6-Attack-Detector/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/mzweilin","download_url":"https://codeload.github.com/mzweilin/IPv6-Attack-Detector/tar.gz/refs/heads/master","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":222252106,"owners_count":16955967,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":[],"created_at":"2024-07-31T17:00:59.850Z","updated_at":"2024-10-30T15:31:51.808Z","avatar_url":"https://github.com/mzweilin.png","language":"Python","funding_links":[],"categories":["Honeypots","\u003ca id=\"a53d22b9c5d09dc894413453f4755658\"\u003e\u003c/a\u003e未分类"],"sub_categories":[],"readme":"6Guard (IPv6 attack detector)\n=============================\n\n## Description\n6Guard is an IPv6 attack detector aiming at link-local level security threats, including most attacks initiated by [the THC-IPv6 suit](http://thc.org/thc-ipv6/) and the advanced host discovery methods used by [Nmap](http://nmap.org). It can help the network administrators detect the link-local IPv6 attacks in the early stage.\n\n6Guard is sponsored by Google Summer of Code 2012 and supported by The Honeynet Project organization. The project page is at [Project 9 - IPv6 attack detector (Xu)](https://www.honeynet.org/gsoc/slots).\n\nHere is an example of the attacking alert message provided by 6Guard.\n\n    [ATTACK]\n    Timestamp: 2012-08-19 14:48:27\n    Reported by: Honeypot-apple-2A:C4:2D\n    Type: DoS\n    Name: Fake Echo Request\n    Attacker: [Unknown]  00:00:de:ad:be:ef (CETIA)\n    Victim  : [Honeypot-apple-2A:C4:2D]  40:3C:FC:2A:C4:2D (Apple, Inc.)\n    Utility: THC-IPv6: smurf6\n    Packets: b12fe3415c1d61c1da085cb8811974a2.pcap\n\n\n## Installation\n1. Download and install [Scapy](http://www.secdev.org/projects/scapy/) in your machine. (Or `apt-get install python-scapy`)\n2. Download the latest code from [Github/mzweilin/ipv6-attack-detector](https://github.com/mzweilin/ipv6-attack-detector) and extract it into a directory.\n\n\n## Usage\n1. Enter the directory of 6Guard.\n2. Run `$ sudo ./conf_generator.py` to generate the configuration files.\n3. Run `$ sudo ./6guadrd.py`.\n\n\n**Note**\n* If it is the first time running 6guard, it will remind you to choice a genuine Router Advertisement message.\n* The attacking alert message will be printed in the screen in real time.\n* The attacking alert message will be also stored in the log file './log/attack.log'.'\n* The attacking alert message includes an item 'Packets', telling which pcap file in './pcap/' is the related one that can be reviewd in Wireshark.\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fmzweilin%2Fipv6-attack-detector","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fmzweilin%2Fipv6-attack-detector","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fmzweilin%2Fipv6-attack-detector/lists"}