Ecosyste.ms: Awesome
An open API service indexing awesome lists of open source software.
https://github.com/Correia-jpv/fucking-awesome-honeypots
An awesome list of honeypot resources. With repository stars⭐ and forks🍴
https://github.com/Correia-jpv/fucking-awesome-honeypots
List: fucking-awesome-honeypots
awesome awesome-list components honey honeyd honeypot honeypots laravel list nodejs open-source oss services web webservices
Last synced: 16 days ago
JSON representation
An awesome list of honeypot resources. With repository stars⭐ and forks🍴
- Host: GitHub
- URL: https://github.com/Correia-jpv/fucking-awesome-honeypots
- Owner: Correia-jpv
- License: artistic-2.0
- Created: 2022-08-04T09:38:08.000Z (over 2 years ago)
- Default Branch: main
- Last Pushed: 2024-10-24T06:51:52.000Z (about 2 months ago)
- Last Synced: 2024-10-25T02:08:05.123Z (about 2 months ago)
- Topics: awesome, awesome-list, components, honey, honeyd, honeypot, honeypots, laravel, list, nodejs, open-source, oss, services, web, webservices
- Language: Python
- Homepage:
- Size: 379 KB
- Stars: 14
- Watchers: 5
- Forks: 12
- Open Issues: 2
-
Metadata Files:
- Readme: README.md
- Contributing: CONTRIBUTING.md
- Funding: .github/FUNDING.yml
- License: LICENSE
Awesome Lists containing this project
- ultimate-awesome - fucking-awesome-honeypots - An awesome list of honeypot resources. With repository stars⭐ and forks🍴. (Other Lists / Monkey C Lists)
README
# Awesome Honeypots [![Awesome Honeypots](https://cdn.rawgit.com/sindresorhus/awesome/d7305f38d29fed78fa85652e3a63e154dd8e8829/media/badge.svg)](https://github.com/sindresorhus/awesome)
A curated list of awesome honeypots, plus related components and much more, divided into categories such as Web, services, and others, with a focus on free and open source projects.
There is no pre-established order of items in each category, the order is for contribution. If you want to contribute, please read the [guide](CONTRIBUTING.md).
Discover more awesome lists at
335945⭐
27971🍴
[sindresorhus/awesome](https://github.com/sindresorhus/awesome)).# Contents
- [Awesome Honeypots ![Awesome Honeypots](https://github.com/sindresorhus/awesome)](#awesome-honeypots-)
- [Contents](#contents)
- [Related Lists](#related-lists)
- [Honeypots](#honeypots)
- [Honeyd Tools](#honeyd-tools)
- [Network and Artifact Analysis](#network-and-artifact-analysis)
- [Data Tools](#data-tools)
- [Guides](#guides)## Related Lists
-
3134⭐
466🍴
[awesome-pcaptools](https://github.com/caesar0301/awesome-pcaptools)) - Useful in network traffic analysis.
-12033⭐
2577🍴
[awesome-malware-analysis](https://github.com/rshipp/awesome-malware-analysis)) - Some overlap here for artifact analysis.## Honeypots
- Database Honeypots
-
23⭐
7🍴
[Delilah](https://github.com/SecurityTW/delilah)) - Elasticsearch Honeypot written in Python (originally from Novetta).
-27⭐
4🍴
[ESPot](https://github.com/mycert/ESPot)) - Elasticsearch honeypot written in NodeJS, to capture every attempts to exploit CVE-2014-3120.
- 🌎 [ElasticPot](gitlab.com/bontchev/elasticpot) - An Elasticsearch Honeypot.
-186⭐
54🍴
[Elastic honey](https://github.com/jordan-wright/elastichoney)) - Simple Elasticsearch Honeypot.
-92⭐
23🍴
[MongoDB-HoneyProxy](https://github.com/Plazmaz/MongoDB-HoneyProxy)) - MongoDB honeypot proxy.
-101⭐
23🍴
[NoSQLpot](https://github.com/torque59/nosqlpot)) - Honeypot framework built on a NoSQL-style database.
-32⭐
14🍴
[mysql-honeypotd](https://github.com/sjinks/mysql-honeypotd)) - Low interaction MySQL honeypot written in C.
-21⭐
2🍴
[MysqlPot](https://github.com/schmalle/MysqlPot)) - MySQL honeypot, still very early stage.
-18⭐
7🍴
[pghoney](https://github.com/betheroot/pghoney)) - Low-interaction Postgres Honeypot.
-11⭐
5🍴
[sticky_elephant](https://github.com/betheroot/sticky_elephant)) - Medium interaction postgresql honeypot.
-22⭐
10🍴
[RedisHoneyPot](https://github.com/cypwnpwnsocute/RedisHoneyPot)) - High Interaction Honeypot Solution for Redis protocol.- Web honeypots
-
17⭐
6🍴
[Express honeypot](https://github.com/christophe77/express-honeypot)) - RFI & LFI honeypot using nodeJS and express.
-36⭐
21🍴
[EoHoneypotBundle](https://github.com/eymengunay/EoHoneypotBundle)) - Honeypot type for Symfony2 forms.
-561⭐
168🍴
[Glastopf](https://github.com/mushorg/glastopf)) - Web Application Honeypot.
- [Google Hack Honeypot](http://ghh.sourceforge.net) - Designed to provide reconnaissance against attackers that use search engines as a hacking tool against your resources.
-863⭐
37🍴
[HellPot](https://github.com/yunginnanet/HellPot)) - Honeypot that tries to crash the bots and clients that visit it's location.
-429⭐
44🍴
[Laravel Application Honeypot](https://github.com/msurguy/Honeypot)) - Simple spam prevention package for Laravel applications.
-45⭐
9🍴
[Nodepot](https://github.com/schmalle/Nodepot)) - NodeJS web application honeypot.
-2⭐
1🍴
[PasitheaHoneypot](https://github.com/Marist-Innovation-Lab/PasitheaHoneypot)) - RestAPI honeypot.
-14⭐
4🍴
[Servletpot](https://github.com/schmalle/servletpot)) - Web application Honeypot.
- 🌎 [Shadow Daemon](shadowd.zecure.org/overview/introduction/) - Modular Web Application Firewall / High-Interaction Honeypot for PHP, Perl, and Python apps.
-72⭐
17🍴
[StrutsHoneypot](https://github.com/Cymmetria/StrutsHoneypot)) - Struts Apache 2 based honeypot as well as a detection module for Apache 2 servers.
-63⭐
16🍴
[WebTrap](https://github.com/IllusiveNetworks-Labs/WebTrap)) - Designed to create deceptive webpages to deceive and redirect attackers away from real websites.
-47⭐
4🍴
[basic-auth-pot (bap)](https://github.com/bjeborn/basic-auth-pot)) - HTTP Basic Authentication honeypot.
-26⭐
1🍴
[bwpot](https://github.com/graneed/bwpot)) - Breakable Web applications honeyPot.
-1027⭐
188🍴
[django-admin-honeypot](https://github.com/dmpayton/django-admin-honeypot)) - Fake Django admin login screen to notify admins of attempted unauthorized access.
-57⭐
11🍴
[drupo](https://github.com/d1str0/drupot)) - Drupal Honeypot.
-421⭐
40🍴
[galah](https://github.com/0x4D31/galah)) - an LLM-powered web honeypot using the OpenAI API.
-44⭐
15🍴
[honeyhttpd](https://github.com/bocajspear1/honeyhttpd)) - Python-based web server honeypot builder.
-26⭐
3🍴
[honeyup](https://github.com/LogoiLab/honeyup)) - An uploader honeypot designed to look like poor website security.
-54⭐
1🍴
[modpot](https://github.com/referefref/modpot)) - Modpot is a modular web application honeypot framework and management application written in Golang and making use of gin framework.
-65⭐
15🍴
[owa-honeypot](https://github.com/joda32/owa-honeypot)) - A basic flask based Outlook Web Honey pot.
-66⭐
36🍴
[phpmyadmin_honeypot](https://github.com/gfoss/phpmyadmin_honeypot)) - Simple and effective phpMyAdmin honeypot.
-?⭐
?🍴
[shockpot](https://github.com/threatstream/shockpot)) - WebApp Honeypot for detecting Shell Shock exploit attempts.
-17⭐
1🍴
[smart-honeypot](https://github.com/freak3dot/smart-honeypot)) - PHP Script demonstrating a smart honey pot.
- Snare/Tanner - successors to Glastopf
-448⭐
137🍴
[Snare](https://github.com/mushorg/snare)) - Super Next generation Advanced Reactive honeypot.
-222⭐
104🍴
[Tanner](https://github.com/mushorg/tanner)) - Evaluating SNARE events.
-23⭐
3🍴
[stack-honeypot](https://github.com/CHH/stack-honeypot)) - Inserts a trap for spam bots into responses.
-11⭐
1🍴
[tomcat-manager-honeypot](https://github.com/helospark/tomcat-manager-honeypot)) - Honeypot that mimics Tomcat manager endpoints. Logs requests and saves attacker's WAR file for later study.
- WordPress honeypots
-32⭐
8🍴
[HonnyPotter](https://github.com/MartinIngesen/HonnyPotter)) - WordPress login honeypot for collection and analysis of failed login attempts.
-6⭐
11🍴
[HoneyPress](https://github.com/kungfuguapo/HoneyPress)) - Python based WordPress honeypot in a Docker container.
-28⭐
4🍴
[wp-smart-honeypot](https://github.com/freak3dot/wp-smart-honeypot)) - WordPress plugin to reduce comment spam with a smarter honeypot.
-180⭐
62🍴
[wordpot](https://github.com/gbrindisi/wordpot)) - WordPress Honeypot.
-437⭐
142🍴
[Python-Honeypot](https://github.com/OWASP/Python-Honeypot)) - OWASP Honeypot, Automated Deception Framework.- Service Honeypots
-161⭐
33🍴
[ADBHoney](https://github.com/huuck/ADBHoney)) - Low interaction honeypot that simulates an Android device running Android Debug Bridge (ADB) server process.
-17⭐
6🍴
[AMTHoneypot](https://github.com/packetflare/amthoneypot)) - Honeypot for Intel's AMT Firmware Vulnerability CVE-2017-5689.
-51⭐
11🍴
[ddospot](https://github.com/aelth/ddospot)) - NTP, DNS, SSDP, Chargen and generic UDP-based amplification DDoS honeypot.
-719⭐
183🍴
[dionaea](https://github.com/DinoTools/dionaea)) - Home of the dionaea honeypot.
-30⭐
4🍴
[dhp](https://github.com/ciscocsirt/dhp)) - Simple Docker Honeypot server emulating small snippets of the Docker HTTP API.
-2⭐
1🍴
[DolosHoneypot](https://github.com/Marist-Innovation-Lab/DolosHoneypot)) - SDN (software defined networking) honeypot.
-66⭐
14🍴
[Ensnare](https://github.com/ahoernecke/ensnare)) - Easy to deploy Ruby honeypot.
-40⭐
4🍴
[Helix](https://github.com/Zeerg/helix-honeypot)) - K8s API Honeypot with Active Defense Capabilities.
-27⭐
14🍴
[honeycomb_plugins](https://github.com/Cymmetria/honeycomb_plugins)) - Plugin repository for Honeycomb, the honeypot framework by Cymmetria.
- [honeydb] (https://honeydb.io/downloads) - Multi-service honeypot that is easy to deploy and configure. Can be configured to send interaction data to to HoneyDB's centralized collectors for access via REST API.
-52⭐
12🍴
[honeyntp](https://github.com/fygrave/honeyntp)) - NTP logger/honeypot.
-50⭐
19🍴
[honeypot-camera](https://github.com/alexbredo/honeypot-camera)) - Observation camera honeypot.
-29⭐
14🍴
[honeypot-ftp](https://github.com/alexbredo/honeypot-ftp)) - FTP Honeypot.
-702⭐
113🍴
[honeypots](https://github.com/qeeqbox/honeypots)) - 25 different honeypots in a single pypi package! (dns, ftp, httpproxy, http, https, imap, mysql, pop3, postgres, redis, smb, smtp, socks5, ssh, telnet, vnc, mssql, elastic, ldap, ntp, memcache, snmp, oracle, sip and irc).
-1225⭐
174🍴
[honeytrap](https://github.com/honeytrap/honeytrap)) - Advanced Honeypot framework written in Go that can be connected with other honeypot software.
-461⭐
94🍴
[HoneyPy](https://github.com/foospidy/HoneyPy)) - Low interaction honeypot.
-20⭐
8🍴
[Honeygrove](https://github.com/UHH-ISS/honeygrove)) - Multi-purpose modular honeypot based on Twisted.
-43⭐
7🍴
[Honeyport](https://github.com/securitygeneration/Honeyport)) - Simple honeyport written in Bash and Python.
-19⭐
11🍴
[Honeyprint](https://github.com/glaslos/honeyprint)) - Printer honeypot.
- 🌎 [Lyrebird](hub.docker.com/r/lyrebird/honeypot-base/) - Modern high-interaction honeypot framework.
-15⭐
4🍴
[MICROS honeypot](https://github.com/Cymmetria/micros_honeypot)) - Low interaction honeypot to detect CVE-2018-2636 in the Oracle Hospitality Simphony component of Oracle Hospitality Applications (MICROS).
-5⭐
0🍴
[node-ftp-honeypot](https://github.com/christophe77/node-ftp-honeypot)) - FTP server honeypot in JS.
-1551⭐
249🍴
[pyrdp](https://github.com/gosecure/pyrdp)) - RDP man-in-the-middle and library for Python 3 with the ability to watch connections live or after the fact.
-63⭐
11🍴
[rdppot](https://github.com/kryptoslogic/rdppot)) - RDP honeypot
-1692⭐
548🍴
[RDPy](https://github.com/citronneur/rdpy)) - Microsoft Remote Desktop Protocol (RDP) honeypot implemented in Python.
-46⭐
17🍴
[SMB Honeypot](https://github.com/r0hi7/HoneySMB)) - High interaction SMB service honeypot capable of capturing wannacry-like Malware.
-26⭐
8🍴
[Tom's Honeypot](https://github.com/inguardians/toms_honeypot)) - Low interaction Python honeypot.
-28⭐
7🍴
[Trapster Commmunity](https://github.com/0xBallpoint/trapster-community)) - Modural and easy to install Python Honeypot, with comprehensive alerting
-?⭐
?🍴
[troje](https://github.com/dutchcoders/troje/)) - Honeypot that runs each connection with the service within a separate LXC container.
-32⭐
12🍴
[WebLogic honeypot](https://github.com/Cymmetria/weblogic_honeypot)) - Low interaction honeypot to detect CVE-2017-10271 in the Oracle WebLogic Server component of Oracle Fusion Middleware.
-5⭐
2🍴
[WhiteFace Honeypot](https://github.com/csirtgadgets/csirtg-honeypot)) - Twisted based honeypot for WhiteFace.
- Distributed Honeypots-
60⭐
12🍴
[DemonHunter](https://github.com/RevengeComing/DemonHunter)) - Low interaction honeypot server.- Anti-honeypot stuff
-
19⭐
3🍴
[canarytokendetector](https://github.com/referefref/canarytokendetector)) - Tool for detection and nullification of Thinkst CanaryTokens
-84⭐
6🍴
[honeydet](https://github.com/referefref/honeydet)) - Signature based honeypot detector tool written in Golang
-56⭐
12🍴
[kippo_detect](https://github.com/andrew-morris/kippo_detect)) - Offensive component that detects the presence of the kippo honeypot.- ICS/SCADA honeypots
-
1251⭐
415🍴
[Conpot](https://github.com/mushorg/conpot)) - ICS/SCADA honeypot.
-137⭐
36🍴
[GasPot](https://github.com/sjhilt/GasPot)) - Veeder Root Gaurdian AST, common in the oil and gas industry.
- [SCADA honeynet](http://scadahoneynet.sourceforge.net) - Building Honeypots for Industrial Networks.
-56⭐
13🍴
[gridpot](https://github.com/sk4ld/gridpot)) - Open source tools for realistic-behaving electric grid honeynets.
- [scada-honeynet](http://www.digitalbond.com/blog/2007/07/24/scada-honeynet-article-in-infragard-publication/) - Mimics many of the services from a popular PLC and better helps SCADA researchers understand potential risks of exposed control system devices.- Other/random
-
114⭐
29🍴
[CitrixHoneypot](https://github.com/MalwareTech/CitrixHoneypot)) - Detect and log CVE-2019-19781 scan and exploitation attempts.
-16⭐
4🍴
[Damn Simple Honeypot (DSHP)](https://github.com/naorlivne/dshp)) - Honeypot framework with pluggable handlers.
-24⭐
8🍴
[dicompot](https://github.com/nsmfoo/dicompot)) - DICOM Honeypot.
- 🌎 [IPP Honey](gitlab.com/bontchev/ipphoney) - A honeypot for the Internet Printing Protocol.
-91⭐
28🍴
[Log4Pot](https://github.com/thomaspatzke/Log4Pot)) - A honeypot for the Log4Shell vulnerability (CVE-2021-44228).
-109⭐
15🍴
[Masscanned](https://github.com/ivre/masscanned)) - Let's be scanned. A low-interaction honeypot focused on network scanners and bots. It integrates very well with IVRE to build a self-hosted alternative to GreyNoise.
-24⭐
6🍴
[medpot](https://github.com/schmalle/medpot)) - HL7 / FHIR honeypot.
-75⭐
22🍴
[NOVA](https://github.com/DataSoft/Nova)) - Uses honeypots as detectors, looks like a complete system.
-23⭐
2🍴
[OpenFlow Honeypot (OFPot)](https://github.com/upa/ofpot)) - Redirects traffic for unused IPs to a honeypot, built on POX.
-2343⭐
363🍴
[OpenCanary](https://github.com/thinkst/opencanary)) - Modular and decentralised honeypot daemon that runs several canary versions of services that alerts when a service is (ab)used.
-51⭐
23🍴
[ciscoasa_honeypot](https://github.com/cymmetria/ciscoasa_honeypot)) A low interaction honeypot for the Cisco ASA component capable of detecting CVE-2018-0101, a DoS and remote code execution vulnerability.
-201⭐
20🍴
[miniprint](https://github.com/sa7mon/miniprint)) - A medium interaction printer honeypot.- Botnet C2 tools
-
188⭐
64🍴
[Hale](https://github.com/pjlantz/Hale)) - Botnet command and control monitor.
- 🌎 [dnsMole](code.google.com/archive/p/dns-mole/) - Analyses DNS traffic and potentionaly detect botnet command and control server activity, along with infected hosts.- IPv6 attack detection tool
-
?⭐
?🍴
[ipv6-attack-detector](https://github.com/mzweilin/ipv6-attack-detector/)) - Google Summer of Code 2012 project, supported by The Honeynet Project organization.- Dynamic code instrumentation toolkit
- 🌎 [Frida](www.frida.re) - Inject JavaScript to explore native apps on Windows, Mac, Linux, iOS and Android.
- Tool to convert website to server honeypots
- [HIHAT](http://hihat.sourceforge.net/) - Transform arbitrary PHP applications into web-based high-interaction Honeypots.
- Malware collector
- 🌎 [Kippo-Malware](bruteforcelab.com/kippo-malware) - Python script that will download all malicious files stored as URLs in a Kippo SSH honeypot database.
- Distributed sensor deployment
- 🌎 [Community Honey Network](communityhoneynetwork.readthedocs.io/en/stable/) - CHN aims to make deployments honeypots and honeypot management tools easy and flexible. The default deployment method uses Docker Compose and Docker to deploy with a few simple commands.
-?⭐
?🍴
[Modern Honey Network](https://github.com/threatstream/mhn)) - Multi-snort and honeypot sensor management, uses a network of VMs, small footprint SNORT installations, stealthy dionaeas, and a centralized server for management.- Network Analysis Tool
- 🌎 [Tracexploit](code.google.com/archive/p/tracexploit/) - Replay network packets.
- Log anonymizer
- [LogAnon](http://code.google.com/archive/p/loganon/) - Log anonymization library that helps having anonymous logs consistent between logs and network captures.
- Low interaction honeypot (router back door)
-
16⭐
3🍴
[Honeypot-32764](https://github.com/knalli/honeypot-for-tcp-32764)) - Honeypot for router backdoor (TCP 32764).
-18⭐
1🍴
[WAPot](https://github.com/lcashdol/WAPot)) - Honeypot that can be used to observe traffic directed at home routers.- honeynet farm traffic redirector
- 🌎 [Honeymole](web.archive.org/web/20100326040550/http://www.honeynet.org.pt:80/index.php/HoneyMole) - Deploy multiple sensors that redirect traffic to a centralized collection of honeypots.
- HTTPS Proxy
- 🌎 [mitmproxy](mitmproxy.org/) - Allows traffic flows to be intercepted, inspected, modified, and replayed.
- System instrumentation
- 🌎 [Sysdig](sysdig.com/opensource/) - Open source, system-level exploration allows one to capture system state and activity from a running GNU/Linux instance, then save, filter, and analyze the results.
-2219⭐
192🍴
[Fibratus](https://github.com/rabbitstack/fibratus)) - Tool for exploration and tracing of the Windows kernel.- Honeypot for USB-spreading malware
-
97⭐
26🍴
[Ghost-usb](https://github.com/honeynet/ghost-usb-honeypot)) - Honeypot for malware that propagates via USB storage devices.- Data Collection
- 🌎 [Kippo2MySQL](bruteforcelab.com/kippo2mysql) - Extracts some very basic stats from Kippo’s text-based log files and inserts them in a MySQL database.
- 🌎 [Kippo2ElasticSearch](bruteforcelab.com/kippo2elasticsearch) - Python script to transfer data from a Kippo SSH honeypot MySQL database to an ElasticSearch instance (server or cluster).- Passive network audit framework parser
-
32⭐
9🍴
[Passive Network Audit Framework (pnaf)](https://github.com/jusafing/pnaf)) - Framework that combines multiple passive and automated analysis techniques in order to provide a security assessment of network platforms.- VM monitoring and tools
-
714⭐
123🍴
[Antivmdetect](https://github.com/nsmfoo/antivmdetection)) - Script to create templates to use with VirtualBox to make VM detection harder.
-485⭐
121🍴
[VMCloak](https://github.com/hatching/vmcloak)) - Automated Virtual Machine Generation and Cloaking for Cuckoo Sandbox.
- [vmitools](http://libvmi.com/) - C library with Python bindings that makes it easy to monitor the low-level details of a running virtual machine.- Binary debugger
-
32⭐
7🍴
[Hexgolems - Pint Debugger Backend](https://github.com/hexgolems/pint)) - Debugger backend and LUA wrapper for PIN.
-142⭐
15🍴
[Hexgolems - Schem Debugger Frontend](https://github.com/hexgolems/schem)) - Debugger frontend.- Mobile Analysis Tool
-
5308⭐
1070🍴
[Androguard](https://github.com/androguard/androguard)) - Reverse engineering, Malware and goodware analysis of Android applications and more.
-?⭐
?🍴
[APKinspector](https://github.com/honeynet/apkinspector/)) - Powerful GUI tool for analysts to analyze the Android applications.- Low interaction honeypot
- 🌎 [Honeyperl](sourceforge.net/projects/honeyperl/) - Honeypot software based in Perl with plugins developed for many functions like : wingates, telnet, squid, smtp, etc.
-6906⭐
1091🍴
[T-Pot](https://github.com/dtag-dev-sec/tpotce)) - All in one honeypot appliance from telecom provider T-Mobile
-697⭐
52🍴
[beelzebub](https://github.com/mariocandela/beelzebub)) - A secure honeypot framework, extremely easy to configure by yaml 🚀- Honeynet data fusion
- 🌎 [HFlow2](projects.honeynet.org/hflow) - Data coalesing tool for honeynet/network analysis.
- Server
- [Amun](http://amunhoney.sourceforge.net) - Vulnerability emulation honeypot.
-?⭐
?🍴
[Artillery](https://github.com/trustedsec/artillery/)) - Open-source blue team tool designed to protect Linux and Windows operating systems through multiple methods.
- [Bait and Switch](http://baitnswitch.sourceforge.net) - Redirects all hostile traffic to a honeypot that is partially mirroring your production system.
-5⭐
4🍴
[Bifrozt](https://github.com/Ziemeck/bifrozt-ansible)) - Automatic deploy bifrozt with ansible.
- [Conpot](http://conpot.org/) - Low interactive server side Industrial Control Systems honeypot.
-377⭐
79🍴
[Heralding](https://github.com/johnnykv/heralding)) - Credentials catching honeypot.
-21⭐
4🍴
[HoneyWRT](https://github.com/CanadianJeff/honeywrt)) - Low interaction Python honeypot designed to mimic services or ports that might get targeted by attackers.
-11⭐
7🍴
[Honeyd](https://github.com/provos/honeyd)) - See [honeyd tools](#honeyd-tools).
- [Honeysink](http://www.honeynet.org/node/773) - Open source network sinkhole that provides a mechanism for detection and prevention of malicious traffic on a given network.
-161⭐
48🍴
[Hontel](https://github.com/stamparm/hontel)) - Telnet Honeypot.
- [KFSensor](http://www.keyfocus.net/kfsensor/) - Windows based honeypot Intrusion Detection System (IDS).
- [LaBrea](http://labrea.sourceforge.net/labrea-info.html) - Takes over unused IP addresses, and creates virtual servers that are attractive to worms, hackers, and other denizens of the Internet.
-104⭐
34🍴
[MTPot](https://github.com/Cymmetria/MTPot)) - Open Source Telnet Honeypot, focused on Mirai malware.
-13⭐
2🍴
[SIREN](https://github.com/blaverick62/SIREN)) - Semi-Intelligent HoneyPot Network - HoneyNet Intelligent Virtual Environment.
-1⭐
0🍴
[TelnetHoney](https://github.com/balte/TelnetHoney)) - Simple telnet honeypot.
-48⭐
11🍴
[UDPot Honeypot](https://github.com/jekil/UDPot)) - Simple UDP/DNS honeypot scripts.
-9⭐
0🍴
[Yet Another Fake Honeypot (YAFH)](https://github.com/fnzv/YAFH)) - Simple honeypot written in Go.
-2⭐
0🍴
[arctic-swallow](https://github.com/ajackal/arctic-swallow)) - Low interaction honeypot.
-1529⭐
180🍴
[fapro](https://github.com/fofapro/fapro)) - Fake Protocol Server.
-246⭐
58🍴
[glutton](https://github.com/mushorg/glutton)) - All eating honeypot.
-43⭐
5🍴
[go-HoneyPot](https://github.com/Mojachieee/go-HoneyPot)) - Honeypot server written in Go.
-10⭐
5🍴
[go-emulators](https://github.com/kingtuna/go-emulators)) - Honeypot Golang emulators.
-28⭐
6🍴
[honeymail](https://github.com/sec51/honeymail)) - SMTP honeypot written in Golang.
-94⭐
18🍴
[honeytrap](https://github.com/tillmannw/honeytrap)) - Low-interaction honeypot and network security tool written to catch attacks against TCP and UDP services.
-25⭐
3🍴
[imap-honey](https://github.com/yvesago/imap-honey)) - IMAP honeypot written in Golang.
- 🌎 [mwcollectd](www.openhub.net/p/mwcollectd) - Versatile malware collection daemon, uniting the best features of nepenthes and honeytrap.
-29⭐
6🍴
[potd](https://github.com/lnslbrty/potd)) - Highly scalable low- to medium-interaction SSH/TCP honeypot designed for OpenWrt/IoT devices leveraging several Linux kernel features, such as namespaces, seccomp and thread capabilities.
-31⭐
4🍴
[portlurker](https://github.com/bartnv/portlurker)) - Port listener in Rust with protocol guessing and safe string display.
-17⭐
5🍴
[slipm-honeypot](https://github.com/rshipp/slipm-honeypot)) - Simple low-interaction port monitoring honeypot.
-304⭐
84🍴
[telnet-iot-honeypot](https://github.com/Phype/telnet-iot-honeypot)) - Python telnet honeypot for catching botnet binaries.
-238⭐
62🍴
[telnetlogger](https://github.com/robertdavidgraham/telnetlogger)) - Telnet honeypot designed to track the Mirai botnet.
-23⭐
6🍴
[vnclowpot](https://github.com/magisterquis/vnclowpot)) - Low interaction VNC honeypot.- IDS signature generation
- [Honeycomb](http://www.icir.org/christian/honeycomb/) - Automated signature creation using honeypots.
- Lookup service for AS-numbers and prefixes
- [CC2ASN](http://www.cc2asn.com/) - Simple lookup service for AS-numbers and prefixes belonging to any given country in the world.
- Data Collection / Data Sharing
- [HPfriends](http://hpfriends.honeycloud.net/#/home) - Honeypot data-sharing platform.
- 🌎 [hpfriends - real-time social data-sharing](heipei.io/sigint-hpfriends/) - Presentation about HPFriends feed system
-?⭐
?🍴
[HPFeeds](https://github.com/rep/hpfeeds/)) - Lightweight authenticated publish-subscribe protocol.- Central management tool
- [PHARM](http://www.nepenthespharm.com/) - Manage, report, and analyze your distributed Nepenthes instances.
- Network connection analyzer
- [Impost](http://impost.sourceforge.net/) - Network security auditing tool designed to analyze the forensics behind compromised and/or vulnerable daemons.
- Honeypot deployment
-
5⭐
0🍴
[honeyfs](https://github.com/referefref/honeyfs)) - Tool to create artificial file systems for medium/high interaction honeypots.
- [Modern Honeynet Network](http://threatstream.github.io/mhn/) - Streamlines deployment and management of secure honeypots.- Honeypot extensions to Wireshark
- 🌎 [Wireshark Extensions](www.honeynet.org/project/WiresharkExtensions) - Apply Snort IDS rules and signatures against packet capture files using Wireshark.
- Client
- 🌎 [CWSandbox / GFI Sandbox](www.gfi.com/products-and-solutions/all-products)
- 🌎 [Capture-HPC-Linux](redmine.honeynet.org/projects/linux-capture-hpc/wiki)
-11⭐
10🍴
[Capture-HPC-NG](https://github.com/CERT-Polska/HSN-Capture-HPC-NG))
- 🌎 [Capture-HPC](projects.honeynet.org/capture-hpc) - High interaction client honeypot (also called honeyclient).
- [HoneyBOT](http://www.atomicsoftwaresolutions.com/)
- 🌎 [HoneyC](projects.honeynet.org/honeyc)
-29⭐
9🍴
[HoneySpider Network](https://github.com/CERT-Polska/hsn2-bundle)) - Highly-scalable system integrating multiple client honeypots to detect malicious websites.
- 🌎 [HoneyWeb](code.google.com/archive/p/gsoc-honeyweb/) - Web interface created to manage and remotely share Honeyclients resources.
-162⭐
65🍴
[Jsunpack-n](https://github.com/urule99/jsunpack-n))
- [MonkeySpider](http://monkeyspider.sourceforge.net)
-25⭐
9🍴
[PhoneyC](https://github.com/honeynet/phoneyc)) - Python honeyclient (later replaced by Thug).
-?⭐
?🍴
[Pwnypot](https://github.com/shjalayeri/pwnypot)) - High Interaction Client Honeypot.
-?⭐
?🍴
[Rumal](https://github.com/thugs-rumal/)) - Thug's Rumāl: a Thug's dress and weapon.
- 🌎 [Shelia](www.cs.vu.nl/~herbertb/misc/shelia/) - Client-side honeypot for attack detection.
- 🌎 [Thug](buffer.github.io/thug/) - Python-based low-interaction honeyclient.
- 🌎 [Thug Distributed Task Queuing](thug-distributed.readthedocs.io/en/latest/index.html)
- 🌎 [Trigona](www.honeynet.org/project/Trigona)
- 🌎 [URLQuery](urlquery.net/)
-69⭐
10🍴
[YALIH (Yet Another Low Interaction Honeyclient)](https://github.com/Masood-M/yalih)) - Low-interaction client honeypot designed to detect malicious websites through signature, anomaly, and pattern matching techniques.- Honeypot
- [Deception Toolkit](http://www.all.net/dtk/dtk.html)
-16⭐
8🍴
[IMHoneypot](https://github.com/mushorg/imhoneypot))- PDF document inspector
-
1315⭐
242🍴
[peepdf](https://github.com/jesparza/peepdf)) - Powerful Python tool to analyze PDF documents.- Hybrid low/high interaction honeypot
- [HoneyBrid](http://honeybrid.sourceforge.net)
- SSH Honeypots
-
21⭐
4🍴
[Blacknet](https://github.com/morian/blacknet)) - Multi-head SSH honeypot system.
-5233⭐
894🍴
[Cowrie](https://github.com/cowrie/cowrie)) - Cowrie SSH Honeypot (based on kippo).
-15⭐
3🍴
[DShield docker](https://github.com/xme/dshield-docker)) - Docker container running cowrie with DShield output enabled.
-7340⭐
282🍴
[endlessh](https://github.com/skeeto/endlessh)) - SSH tarpit that slowly sends an endless banner. 🌎 [docker image](hub.docker.com/r/linuxserver/endlessh))
-373⭐
71🍴
[HonSSH](https://github.com/tnich/honssh)) - Logs all SSH communications between a client and server.
-6⭐
1🍴
[HUDINX](https://github.com/Cryptix720/HUDINX)) - Tiny interaction SSH honeypot engineered in Python to log brute force attacks and, most importantly, the entire shell interaction performed by the attacker.
-1628⭐
277🍴
[Kippo](https://github.com/desaster/kippo)) - Medium interaction SSH honeypot.
-10⭐
2🍴
[Kippo_JunOS](https://github.com/gregcmartin/Kippo_JunOS)) - Kippo configured to be a backdoored netscreen.
-38⭐
5🍴
[Kojoney2](https://github.com/madirish/kojoney2)) - Low interaction SSH honeypot written in Python and based on Kojoney by Jose Antonio Coret.
- [Kojoney](http://kojoney.sourceforge.net/) - Python-based Low interaction honeypot that emulates an SSH server implemented with Twisted Conch.
-18⭐
2🍴
[Longitudinal Analysis of SSH Cowrie Honeypot Logs](https://github.com/deroux/longitudinal-analysis-cowrie)) - Python based command line tool to analyze cowrie logs over time.
- [LongTail Log Analysis @ Marist College](http://longtail.it.marist.edu/honey/) - Analyzed SSH honeypot logs.
-8⭐
1🍴
[Malbait](https://github.com/batchmcnulty/Malbait)) - Simple TCP/UDP honeypot implemented in Perl.
-125⭐
23🍴
[MockSSH](https://github.com/ncouture/MockSSH)) - Mock an SSH server and define all commands it supports (Python, Twisted).
-7⭐
4🍴
[cowrie2neo](https://github.com/xlfe/cowrie2neo)) - Parse cowrie honeypot logs into a neo4j database.
-32⭐
5🍴
[go-sshoney](https://github.com/ashmckenzie/go-sshoney)) - SSH Honeypot.
-35⭐
5🍴
[go0r](https://github.com/fzerorubigd/go0r)) - Simple ssh honeypot in Golang.
-11⭐
2🍴
[gohoney](https://github.com/PaulMaddox/gohoney)) - SSH honeypot written in Go.
-3⭐
0🍴
[hived](https://github.com/sahilm/hived)) - Golang-based honeypot.
-38⭐
12🍴
[hnypots-agent)](https://github.com/joshrendek/hnypots-agent)) - SSH Server in Go that logs username and password combinations.
-28⭐
7🍴
[honeypot.go](https://github.com/mdp/honeypot.go)) - SSH Honeypot written in Go.
-12⭐
1🍴
[honeyssh](https://github.com/ppacher/honeyssh)) - Credential dumping SSH honeypot with statistics.
-22⭐
2🍴
[hornet](https://github.com/czardoz/hornet)) - Medium interaction SSH honeypot that supports multiple virtual hosts.
-19⭐
8🍴
[ssh-auth-logger](https://github.com/JustinAzoff/ssh-auth-logger)) - Low/zero interaction SSH authentication logging honeypot.
-628⭐
242🍴
[ssh-honeypot](https://github.com/droberson/ssh-honeypot)) - Fake sshd that logs IP addresses, usernames, and passwords.
-26⭐
1🍴
[ssh-honeypot](https://github.com/amv42/sshd-honeypot)) - Modified version of the OpenSSH deamon that forwards commands to Cowrie where all commands are interpreted and returned.
-15⭐
4🍴
[ssh-honeypotd](https://github.com/sjinks/ssh-honeypotd)) - Low-interaction SSH honeypot written in C.
-39⭐
5🍴
[sshForShits](https://github.com/traetox/sshForShits)) - Framework for a high interaction SSH honeypot.
-1552⭐
95🍴
[sshesame](https://github.com/jaksi/sshesame)) - Fake SSH server that lets everyone in and logs their activity.
-168⭐
46🍴
[sshhipot](https://github.com/magisterquis/sshhipot)) - High-interaction MitM SSH honeypot.
-14⭐
3🍴
[sshlowpot](https://github.com/magisterquis/sshlowpot)) - Yet another no-frills low-interaction SSH honeypot in Go.
-96⭐
8🍴
[sshsyrup](https://github.com/mkishere/sshsyrup)) - Simple SSH Honeypot with features to capture terminal activity and upload to asciinema.org.
-86⭐
22🍴
[twisted-honeypots](https://github.com/lanjelot/twisted-honeypots)) - SSH, FTP and Telnet honeypots based on Twisted.- Distributed sensor project
- 🌎 [DShield Web Honeypot Project](sites.google.com/site/webhoneypotsite/)
- A pcap analyzer
- 🌎 [Honeysnap](projects.honeynet.org/honeysnap/)
- Network traffic redirector
- 🌎 [Honeywall](projects.honeynet.org/honeywall/)
- Honeypot Distribution with mixed content
- 🌎 [HoneyDrive](bruteforcelab.com/honeydrive)
- Honeypot sensor
- 🌎 [Honeeepi](redmine.honeynet.org/projects/honeeepi/wiki) - Honeypot sensor on a Raspberry Pi based on a customized Raspbian OS.
- File carving
- 🌎 [TestDisk & PhotoRec](www.cgsecurity.org/)
- Behavioral analysis tool for win32
- 🌎 [Capture BAT](www.honeynet.org/node/315)
- Live CD
- 🌎 [DAVIX](www.secviz.org/node/89) - The DAVIX Live CD.
- Spamtrap
- 🌎 [Mail::SMTP::Honeypot](metacpan.org/pod/release/MIKER/Mail-SMTP-Honeypot-0.11/Honeypot.pm) - Perl module that appears to provide the functionality of a standard SMTP server.
-256⭐
72🍴
[Mailoney](https://github.com/awhitehatter/mailoney)) - SMTP honeypot, Open Relay, Cred Harvester written in python.
-12⭐
8🍴
[SendMeSpamIDS.py](https://github.com/johestephan/VerySimpleHoneypot)) - Simple SMTP fetch all IDS and analyzer.
-133⭐
37🍴
[Shiva](https://github.com/shiva-spampot/shiva)) - Spam Honeypot with Intelligent Virtual Analyzer.
- 🌎 [Shiva The Spam Honeypot Tips And Tricks For Getting It Up And Running](www.pentestpartners.com/security-blog/shiva-the-spam-honeypot-tips-and-tricks-for-getting-it-up-and-running/)
-5⭐
0🍴
[SMTPLLMPot](https://github.com/referefref/SMTPLLMPot)) - A super simple SMTP Honeypot built using GPT3.5
-26⭐
3🍴
[SpamHAT](https://github.com/miguelraulb/spamhat)) - Spam Honeypot Tool.
- [Spamhole](http://www.spamhole.net/)
-3⭐
0🍴
[honeypot](https://github.com/jadb/honeypot)) - The Project Honey Pot un-official PHP SDK.
- [spamd](http://man.openbsd.org/cgi-bin/man.cgi?query=spamd%26apropos=0%26sektion=0%26manpath=OpenBSD+Current%26arch=i386%26format=html)- Commercial honeynet
- [Cymmetria Mazerunner](ttps://cymmetria.com/products/mazerunner/) - Leads attackers away from real targets and creates a footprint of the attack.
- Server (Bluetooth)
-
244⭐
29🍴
[Bluepot](https://github.com/andrewmichaelsmith/bluepot))- Dynamic analysis of Android apps
- 🌎 [Droidbox](code.google.com/archive/p/droidbox/)
- Dockerized Low Interaction packaging
-
22⭐
4🍴
[Docker honeynet](https://github.com/sreinhardt/Docker-Honeynet)) - Several Honeynet tools set up for Docker containers.
- 🌎 [Dockerized Thug](hub.docker.com/r/honeynet/thug/) - Dockerized995⭐
204🍴
[Thug](https://github.com/buffer/thug)) to analyze malicious web content.
-148⭐
14🍴
[Dockerpot](https://github.com/mrschyte/dockerpot)) - Docker based honeypot.
-24⭐
5🍴
[Manuka](https://github.com/andrewmichaelsmith/manuka)) - Docker based honeypot (Dionaea and Kippo).
-7⭐
1🍴
[honey_ports](https://github.com/run41/honey_ports)) - Very simple but effective docker deployed honeypot to detect port scanning in your environment.
-33⭐
5🍴
[mhn-core-docker](https://github.com/MattCarothers/mhn-core-docker)) - Core elements of the Modern Honey Network implemented in Docker.- Network analysis
- 🌎 [Quechua](bitbucket.org/zaccone/quechua)
- SIP Server
- [Artemnesia VoIP](http://artemisa.sourceforge.net)
- SIP
-
173⭐
17🍴
[SentryPeer](https://github.com/SentryPeer/SentryPeer)) - Protect your SIP Servers from bad actors.- IOT Honeypot
-
121⭐
43🍴
[HoneyThing](https://github.com/omererdem/honeything)) - TR-069 Honeypot.
-26⭐
8🍴
[Kako](https://github.com/darkarnium/kako)) - Honeypots for a number of well known and deployed embedded device vulnerabilities.- Honeytokens
-1759⭐
258🍴
[CanaryTokens](https://github.com/thinkst/canarytokens)) - Self-hostable honeytoken generator and reporting dashboard; demo version available at 🌎 [CanaryTokens.org](canarytokens.org/generate).
-273⭐
45🍴
[Honeybits](https://github.com/0x4D31/honeybits)) - Simple tool designed to enhance the effectiveness of your traps by spreading breadcrumbs and honeytokens across your production servers and workstations to lure the attacker toward your honeypots.
-511⭐
55🍴
[Honeyλ (HoneyLambda)](https://github.com/0x4D31/honeylambda)) - Simple, serverless application designed to create and monitor URL honeytokens, on top of AWS Lambda and Amazon API Gateway.
-497⭐
102🍴
[dcept](https://github.com/secureworks/dcept)) - Tool for deploying and detecting use of Active Directory honeytokens.
-60⭐
10🍴
[honeyku](https://github.com/0x4D31/honeyku)) - Heroku-based web honeypot that can be used to create and monitor fake HTTP endpoints (i.e. honeytokens).## Honeyd Tools
- Honeyd plugin
- [Honeycomb](http://www.honeyd.org/tools.php)
- Honeyd viewer
- [Honeyview](http://honeyview.sourceforge.net/)
- Honeyd to MySQL connector
- 🌎 [Honeyd2MySQL](bruteforcelab.com/honeyd2mysql)
- A script to visualize statistics from honeyd
- 🌎 [Honeyd-Viz](bruteforcelab.com/honeyd-viz)
- Honeyd stats
-350⭐
103🍴
[Honeydsum.pl](https://github.com/DataSoft/Honeyd/blob/master/scripts/misc/honeydsum-v0.3/honeydsum.pl))## Network and Artifact Analysis
- Sandbox
- [Argos](http://www.few.vu.nl/argos/) - Emulator for capturing zero-day attacks.
- 🌎 [COMODO automated sandbox](help.comodo.com/topic-72-1-451-4768-.html)
- 🌎 [Cuckoo](cuckoosandbox.org/) - Leading open source automated malware analysis system.
-126⭐
31🍴
[Pylibemu](https://github.com/buffer/pylibemu)) - Libemu Cython wrapper.
- 🌎 [RFISandbox](monkey.org/~jose/software/rfi-sandbox/) - PHP 5.x script sandbox built on top of 🌎 [funcall](pecl.php.net/package/funcall).
-197⭐
35🍴
[dorothy2](https://github.com/m4rco-/dorothy2)) - Malware/botnet analysis framework written in Ruby.
-13⭐
6🍴
[imalse](https://github.com/hbhzwj/imalse)) - Integrated MALware Simulator and Emulator.
-148⭐
40🍴
[libemu](https://github.com/buffer/libemu)) - Shellcode emulation library, useful for shellcode detection.- Sandbox-as-a-Service
- 🌎 [Hybrid Analysis](www.hybrid-analysis.com) - Free malware analysis service powered by Payload Security that detects and analyzes unknown threats using a unique Hybrid Analysis technology.
- 🌎 [Joebox Cloud](jbxcloud.joesecurity.org/login) - Analyzes the behavior of malicious files including PEs, PDFs, DOCs, PPTs, XLSs, APKs, URLs and MachOs on Windows, Android and Mac OS X for suspicious activities.
- 🌎 [VirusTotal](www.virustotal.com/) - Analyze suspicious files and URLs to detect types of malware, and automatically share them with the security community.
- 🌎 [malwr.com](malwr.com/) - Free malware analysis service and community.## Data Tools
- Front Ends
-
66⭐
27🍴
[DionaeaFR](https://github.com/rubenespadas/DionaeaFR)) - Front Web to Dionaea low-interaction honeypot.
-12⭐
1🍴
[Django-kippo](https://github.com/jedie/django-kippo)) - Django App for kippo SSH Honeypot.
-3⭐
0🍴
[Shockpot-Frontend](https://github.com/GovCERT-CZ/Shockpot-Frontend)) - Full featured script to visualize statistics from a Shockpot honeypot.
-254⭐
43🍴
[Tango](https://github.com/aplura/Tango)) - Honeypot Intelligence with Splunk.
-5⭐
1🍴
[Wordpot-Frontend](https://github.com/GovCERT-CZ/Wordpot-Frontend)) - Full featured script to visualize statistics from a Wordpot honeypot.
-4⭐
1🍴
[honeyalarmg2](https://github.com/schmalle/honeyalarmg2)) - Simplified UI for showing honeypot alarms.
-3⭐
0🍴
[honeypotDisplay](https://github.com/Joss-Steward/honeypotDisplay)) - Flask website which displays data gathered from an SSH Honeypot.- Visualization
-
10⭐
6🍴
[Acapulco](https://github.com/hgascon/acapulco)) - Automated Attack Community Graph Construction.
-15⭐
7🍴
[Afterglow Cloud](https://github.com/ayrus/afterglow-cloud))
- [Afterglow](http://afterglow.sourceforge.net/)
-3⭐
0🍴
[Glastopf Analytics](https://github.com/katkad/Glastopf-Analytics)) - Easy honeypot statistics.
-14⭐
3🍴
[HoneyMalt](https://github.com/SneakersInc/HoneyMalt)) - Maltego tranforms for mapping Honeypot systems.
-219⭐
88🍴
[HoneyMap](https://github.com/fw42/honeymap)) - Real-time websocket stream of GPS events on a fancy SVG world map.
- 🌎 [HoneyStats](sourceforge.net/projects/honeystats/) - Statistical view of the recorded activity on a Honeynet.
-15⭐
4🍴
[HpfeedsHoneyGraph](https://github.com/yuchincheng/HpfeedsHoneyGraph)) - Visualization app to visualize hpfeeds logs.
-3502⭐
637🍴
[IVRE](https://github.com/ivre/ivre)) - Network recon framework, published by @cea-sec & @ANSSI-FR. Build your own, self-hosted and fully-controlled alternatives to Criminalip / Shodan / ZoomEye / Censys and GreyNoise, run your Passive DNS service, collect and analyse network intelligence from your sensors, and much more!
-18⭐
2🍴
[Kippo stats](https://github.com/mfontani/kippo-stats)) - Mojolicious app to display statistics for your kippo SSH honeypot.
- 🌎 [Kippo-Graph](bruteforcelab.com/kippo-graph) - Full featured script to visualize statistics from a Kippo SSH honeypot.
-62⭐
11🍴
[The Intelligent HoneyNet](https://github.com/jpyorre/IntelligentHoneyNet)) - Create actionable information from honeypots.
-47⭐
15🍴
[ovizart](https://github.com/oguzy/ovizart)) - Visual analysis for network traffic.## Guides
- 🌎 [T-Pot: A Multi-Honeypot Platform](dtag-dev-sec.github.io/mediator/feature/2015/03/17/concept.html)
-?⭐
?🍴
[Honeypot (Dionaea and kippo) setup script](https://github.com/andrewmichaelsmith/honeypot-setup-script/))- Deployment
- [Dionaea and EC2 in 20 Minutes](http://andrewmichaelsmith.com/2012/03/dionaea-honeypot-on-ec2-in-20-minutes/) - Tutorial on setting up Dionaea on an EC2 instance.
- 🌎 [Using a Raspberry Pi honeypot to contribute data to DShield/ISC](isc.sans.edu/diary/22680) - The Raspberry Pi based system will allow us to maintain one code base that will make it easier to collect rich logs beyond firewall logs.
-32⭐
5🍴
[honeypotpi](https://github.com/free5ty1e/honeypotpi)) - Script for turning a Raspberry Pi into a HoneyPot Pi.- Research Papers
-
30⭐
6🍴
[Honeypot research papers](https://github.com/shbhmsingh72/Honeypot-Research-Papers)) - PDFs of research papers on honeypots.
- 🌎 [vEYE](link.springer.com/article/10.1007%2Fs10115-008-0137-3) - Behavioral footprinting for self-propagating worm detection and profiling.## Source
8710⭐
1262🍴
[paralax/awesome-honeypots](https://github.com/paralax/awesome-honeypots))