paralax-awesome-honeypots
https://github.com/r3p3r/paralax-awesome-honeypots
Last synced: about 11 hours ago
JSON representation
-
Related Lists
-
<a name="honeypots"></a> Honeypots
- Delilah - An Elasticsearch Honeypot written in Python.
- Shadow Daemon - A modular Web Application Firewall / High-Interaction Honeypot for PHP, Perl & Python apps.
- shockpot - WebApp Honeypot for detecting Shell Shock exploit attempts.
- HoneyPress - python based WordPress honeypot in a docker container.
- Lyrebird - A modern high-interaction honeypot framework.
- Open Canary - A low interaction honeypot intended to be run on internal networks.
- dnsMole - analyse dns traffic, and to potentionaly detect botnet C&C server and infected hosts.
- Modern Honey Network - Multi-snort and honeypot sensor management, uses a network of VMs, small footprint SNORT installations, stealthy dionaeas, and a centralized server for management.
- ADHD - Active Defense Harbinger Distribution (ADHD) is a Linux distro based on Ubuntu LTS. It comes with many tools aimed at active defense preinstalled and configured.
- Tracexploit - replay network packets.
- LogAnon - log anonymization library that helps having anonymous logs consistent between logs and network captures.
- Honeymole - eploy multiple sensors that redirect traffic to a centralized collection of honeypots.
- mitmproxy - allows traffic flows to be intercepted, inspected, modified and replayed.
- Honeystick - low interaction honeypot on USB stick
- vmscope - Monitoring of VM-based.
- Honeyperl - Honeypot software based in Perl with plugins developed for many functions like : wingates, telnet, squid, smtp, etc.
- HFlow2 - data coalesing tool for honeynet/network analysis.
- Honeysink - open source network sinkhole that provides a mechanism for detection and prevention of malicious traffic on a given network.
- Conpot - ow interactive server side Industrial Control Systems honeypot.
- Beeswarm - Honeypot deployment made easy.
- TelnetHoney - A simple telnet honeypot.
- Honeycomb - Automated signature creation using honeypots.
- Rumal - Thug's Rumāl: a Thug's dress & weapon.
- HPfriends - Honeypot data-sharing platform.
- PHARM - Manage , Report, Analyze your distributed Nepenthes instances.
- Modern Honeynet Network - makes deploying and managing secure honeypots extremely simple.
- SurfIDS - an open source Distributed Intrusion Detection System based on passive sensors.
- Whireshark Extensions - support applying Snort IDS rules and signatures against pcap files.
- Pwnypot - High Interaction Client Honeypot
- URLQuery
- Trigona
- Shelia
- HoneyC
- CWSandbox / GFI Sandbox
- Capture-HPC-Linux
- Capture-HPC - a high interaction client honeypot (also called honeyclient).
- Viper
- Single-honeypot
- Honeyd For Windows
- Deception Toolkit
- Thug Distributed Task Queuing
- HoneyWeb
- LongTail Log Analysis @ Marist College - analyzed SSH honeypot logs
- DShield Web Honeypot Project
- Distributed Web Honeypot Project
- Honeysnap
- Honeywall
- Sebek - data capture
- Qebek - QEMU based Sebek. As Sebek, it is data capture tool for high interaction honeypot.
- xebek - Sebek on Xen
- Capture BAT
- DAVIX
- Spamhole
- spamd
- Shiva The Spam Honeypot Tips And Tricks For Getting It Up And Running
- HONEYPOINT SECURITY SERVER - distributed honeypot, includes IT and SCADA emulators.
- Cymmetria Mazerunner - MazeRunner leads attackers away from real targets and creates a footprint of the attack.
- Dockerized Thug - A dockerized [Thug](https://github.com/buffer/thug) to analyze malicious web content.
- Quechua
- Artemnesia VoIP
- MongoDB-HoneyProxy - A MongoDB honeypot proxy.
- Elastic honey - A Simple Elasticsearch Honeypot.
- mysql - A mysql honeypot, still very very early stage.
- NoSQLpot - The NoSQL Honeypot Framework.
- ESPot - An Elasticsearch honeypot written in NodeJS, to capture every attempts to exploit CVE-2014-3120.
- mysql-honeypotd - Low interaction MySQL honeypot written in C.
- Glastopf - Web Application Honeypot.
- Snare - Super Next generation Advanced Reactive honEypot
- Tanner - Evaluating SNARE events
- phpmyadmin_honeypot - - A simple and effective phpMyAdmin honeypot.
- Nodepot - A nodejs web application honeypot.
- basic-auth-pot - http Basic Authentication honeyPot.
- Servletpot - Web application Honeypot.
- smart-honeypot - PHP Script demonstrating a smart honey pot.
- Bukkit Honeypot - A honeypot plugin for Bukkit.
- Laravel Application Honeypot - Honeypot - Simple spam prevention package for Laravel applications.
- stack-honeypot - Inserts a trap for spam bots into responses.
- EoHoneypotBundle - Honeypot type for Symfony2 forms.
- django-admin-honeypot - A fake Django admin login screen to notify admins of attempted unauthorized access.
- HonnyPotter - A WordPress login honeypot for collection and analysis of failed login attempts.
- wp-smart-honeypot - WordPress plugin to reduce comment spam with a smarter honeypot.
- wordpot - A WordPress Honeypot.
- honeyntp - NTP logger/honeypot.
- honeypot-camera - observation camera honeypot.
- HoneyPy - A low interaction honeypot.
- Ensnare - Easy to deploy Ruby honeypot.
- RDPy - A Microsoft Remote Desktop Protocol (RDP) honeypot in python.
- Honeyprint - Printer honeypot.
- Tom's Honeypot - Low interaction Python honeypot.
- Honeyport - A simple honeyport written in Bash and Python.
- DemonHunter - Low interaction Honepot Server.
- kippo_detect - This is not a honeypot, but it detects kippo. (This guy has lots of more interesting stuff)
- Conpot - ICS/SCADA honeypot.
- gridpot - Open source tools for realistic-behaving electric grid honeynets .
- GasPot - Veeder Root Gaurdian AST, common in the oil and gas industry.
- NOVA
- OFPot - OpenFlow Honeypot, redirects traffic for unused IPs to a honeypot. Built on POX.
- OpenCanary - Modular and decentralised honeypot.
- DSHP - Damn Simple HoneyPot with pluggable handlers.
- Hale - Botnet command & control monitor.
- Honeymole - eploy multiple sensors that redirect traffic to a centralized collection of honeypots.
- HIHAT - Transform arbitrary PHP applications into web-based high-interaction Honeypots.
- Open Canary - A low interaction honeypot intended to be run on internal networks.
-
<a name="honeyd"></a> Honeyd Tools
- Honeyd configuration GUI - application used to configure
- Honeydsum.pl
-
<a name="analysis"></a> Network and Artifact Analysis
- RFISandbox - a PHP 5.x script sandbox built on top of [funcall](https://pecl.php.net/package/funcall)
- COMODO automated sandbox
- Argos - An emulator for capturing zero-day attacks
- Cuckoo - he leading open source automated malware analysis system.
- malwr.com - free malware analysis service and community.
- detux.org - Multiplatform Linux Sandbox.
- linux.huntingmalware.com - Multiplatform Linux Sandbox based on Cuckoo v2.
- Joebox Cloud - analyzes the behavior of malicious files including PEs, PDFs, DOCs, PPTs, XLSs, APKs, URLs and MachOs on Windows, Android and Mac OS X for suspicious activities.
-
<a name="visualizers"></a> Data Tools
- Kippo-Graph - a full featured script to visualize statistics from a Kippo SSH honeypot.
- HoneyStats - A statistical view of the recorded activity on a Honeynet.
- Sebek Dataviz - Sebek data visualization.
-
<a name="guides"></a>Guides
- T-Pot: A Multi-Honeypot Platform
- Using a Raspberry Pi honeypot to contribute data to DShield/ISC - The Raspberry Pi based system will allow us to maintain one code base that will make it easier to collect rich logs beyond firewall logs.
- vEYE - behavioral footprinting for self-propagating worm detection and profiling.
Categories
Sub Categories
Keywords
honeypot
10
security
6
python
3
threatintel
1
threat-sharing
1
threat-intelligence
1
static-analysis
1
network-traffic
1
malware-samples
1
malware-research
1
malware-collection
1
malware-analysis
1
list
1
dynamic-analysis
1
drop-ice
1
domain-analysis
1
chinese-translation
1
chinese
1
awesome-list
1
awesome
1
automated-analysis
1
analysis-framework
1
scada
1
ics
1
security-tools
1
distributed
1
deception
1
twisted
1
honeypy
1
wordpress-plugin
1
wordpress
1
django
1
stack
1
php
1
middleware
1
mysql
1
proxy
1
mongodb
1
mongo
1
infosec
1
information-security
1