Ecosyste.ms: Awesome

An open API service indexing awesome lists of open source software.

Awesome Lists | Featured Topics | Projects

https://github.com/aau-network-security/HosTaGe

Low Interaction Mobile Honeypot
https://github.com/aau-network-security/HosTaGe

android honeypot

Last synced: 21 days ago
JSON representation

Low Interaction Mobile Honeypot

Awesome Lists containing this project

README

        

![alt text](https://github.com/aau-network-security/HosTaGe/blob/master/jekyll/ic_launcher.png "Logo Title Text 1")

[](https://www.honeynet.org/2020/09/29/gsoc-2020-project-summary-hostage/) [](https://www.youtube.com/watch?v=uMR76HTm9M0)

HosTaGe - Honeypot-To-Go
========================
Copyright (C) 2013-2021, Aalborg University (Denmark) and Technische Universität Darmstadt (Germany)

[![HosTaGe Video](http://img.youtube.com/vi/nRrc2T8_oKM/0.jpg)](http://www.youtube.com/watch?v=nRrc2T8_oKM)

HosTaGe is a lightweight, low-interaction, portable, and generic honeypot for mobile devices that aims on the detection of malicious, wireless network environments.
As most malware propagate over the network via specific protocols, a low-interaction honeypot located at a mobile device can check wireless networks for actively propagating malware. We envision such honeypots running on all kinds of mobile devices, e.g., smartphones and tablets, to provide a quick assessment on the potential security state of a network.

HosTaGe emulates the following protocols as of the latest version: AMQP, COAP, ECHO, FTP, HTTP, HTTPS, MySQL, MQTT, MODBUS, S7COMM, SNMP, SIP, SMB, SSH, SMTP and TELNET

__Download from Play Store!__

The stable release of HosTaGe can be installed from Google Play Store. [Play Store Link](https://play.google.com/store/apps/details?id=dk.aau.netsec.hostage) or, Scan the QR code below from your Android device.

![QR](https://github.com/sastry17/HosTaGe-Wiki/blob/master/img/HosTaGe-QR.png)

__References__

The research behind HosTaGe has been published and presented in a number of scientific and industrial conferences. Below you can find some selected papers:

[1] Emmanouil Vasilomanolakis, Shankar Karuppayah, Mathias Fischer, Mihai Plasoianu, Wulf Pfeiffer, Lars Pandikow, Max Mühlhäuser: This Network is Infected: HosTaGe – a Low-Interaction Honeypot for Mobile Devices. SPSM@CCS 2013:43-48

[2] Emmanouil Vasilomanolakis, Shankar Karuppayah, Mathias Fischer, Max Mühlhäuser: HosTaGe: a Mobile Honeypot for Collaborative Defense. ACM SIN 2014:330-333

[3] Emmanouil Vasilomanolakis, Shreyas Srinivasa, Max Mühlhäuser: Did you really hack a nuclear power plant? An industrial control mobile honeypot. IEEE CNS 2015:729-730

[4] Emmanouil Vasilomanolakis, Shreyas Srinivasa, Carlos Garcia Cordero, Max Mühlhäuser: Multi-stage Attack Detection and Signature Generation with ICS Honeypots. IEEE/IFIP DISSECT@NOMS 2016:1227-1232

__Download APK__

[HosTaGe-v2.2.11.apk](https://github.com/aau-network-security/HosTaGe/releases/download/v2.2.11/HosTaGe-2.2.11.apk) [Release-Notes](https://github.com/aau-network-security/HosTaGe/releases/tag/v2.2.11)(latest)

HosTaGe-v2.1.1.apk [Release-Notes](https://github.com/aau-network-security/HosTaGe/releases/tag/v2.1.1)

HosTaGe-v2.0.0.apk [Release-Notes](https://github.com/aau-network-security/HosTaGe/releases/tag/v2.0.0)

__Wiki__

The Wiki provides information on getting started and using the app.
Wiki for HosTaGe can be found here: [Wiki](https://github.com/aau-network-security/HosTaGe/wiki/2.-Getting-Started).

__GUI__

![homescreen](https://github.com/sastry17/HosTaGe-Wiki/raw/master/gif/alert.gif)

__Original Authors__

[Emmanouil Vasilomanolakis](https://mvasiloma.com/) - idea, guidance and suggestions during development

__Contributors__

[Shreyas Srinivasa](https://sastry17.github.io/), lead developer, Aalborg University and Technische Universität Darmstadt (Github - @sastry17)

Eirini Lygerou, GSoC 2020 Developer (Github - @irinil)

Mihai Plasoianu, student developer, Technische Universität Darmstadt

Wulf Pfeiffer, student developer, Technische Universität Darmstadt

Lars Pandikow, student developer, Technische Universität Darmstadt

__Researchers__

[Shankar Karuppayah](https://www.kshankar.com/), mentoring, developer, Technische Universität Darmstadt

[Mathias Fischer](https://www.inf.uni-hamburg.de/inst/ab/snp/team/fischer.html), mentoring, Universität Hamburg

[Max Mühlhäuser](https://www.informatik.tu-darmstadt.de/telekooperation/telecooperation_group/staff_1/staff_1_details_23168.en.jsp), mentoring, Technische Universität Darmstadt

Carlos Garcia Cordero, mentoring, Technische Universität Darmstadt

Features of HoneyRJ were inspiration for this project.
http://www.cse.wustl.edu/~jain/cse571-09/ftp/honey/manual.html\

Encryption for the SSH protocol were taken from Ganymed SSH-2 and slightly modified.
http://code.google.com/p/ganymed-ssh-2/

__GSoC 2020__

The project was actively developed with participation in Google Summer of Code 2020. More information about GSoC2020 is [here](https://summerofcode.withgoogle.com/projects/#5293206515744768)

__HPFeeds__

To access the hpfeeds from hostage please send an access request to [email protected] with your name and organization. Please note that access to the hpfeeds repository is provided only after an internal review.

__Contact__

Please use the Github issues to report any issues or for questions.
[Slack channel](https://honeynetpublic.slack.com/archives/CUCJPUE3H); [Email](mailto:[email protected])

__License & Distribution__

Distributed under the MIT license. See [LICENSE](./LICENSE.md) for license information.