Acapulco (Attack Community grAPh COnstruction) Logo

Acapulco (Attack Community grAPh COnstruction)

A Splunk application that processes honeypot data from hpfeeds channels to generate clustered meta-events and visualizations for security analysis.

11
Visit website
Compare
Compare
0
MCPThe entire cybersecurity market, one prompt awayTry MCP Access

Acapulco (Attack Community grAPh COnstruction) Description

Acapulco (Attack Community grAPh COnstruction) is a Splunk application developed by The Honeynet Project that processes honeypot data from hpfeeds channels to generate meta-events for security analysis. The application automatically collects data from multiple hpfeeds channels and creates clustered meta-events using DBSCAN or K-means algorithms. These processed events are then visualized through parallel coordinates graphs built with the D3.js visualization library, providing an external client interface for data analysis. The tool includes a runner.py script that processes hpfeeds log files to create two types of meta-event files: one containing plain features and another with clustered feature values. This clustering approach helps identify patterns and relationships within honeypot data. Installation involves deploying the Splunk application bundle to a central server by extracting it to the splunk/etc/apps directory. Once configured with hpfeeds integration, the application can process honeypot logs and generate the visualization data for security analysis purposes. The software is distributed under the GNU GPL license and is designed to provide insights for cybersecurity professionals analyzing attack patterns and honeypot interactions.

Acapulco (Attack Community grAPh COnstruction) FAQ

Common questions about Acapulco (Attack Community grAPh COnstruction) including features, pricing, alternatives, and user reviews.

Acapulco (Attack Community grAPh COnstruction) is A Splunk application that processes honeypot data from hpfeeds channels to generate clustered meta-events and visualizations for security analysis.. It is a Security Operations solution designed to help security teams with Visualization, Splunk.

Have more questions? Browse our categories or search for specific tools.

ALTERNATIVES

Shockpot-Frontend Logo

A web-based visualization tool that displays statistics and generates charts from Shockpot honeypot data stored in PostgreSQL databases.

0
mhn-core-docker Logo

A Docker-based honeypot network implementation featuring cowrie and dionaea honeypots with centralized event collection, geolocation enrichment, and real-time attack visualization.

0
Tango Logo

Tango is a set of scripts and Splunk apps for deploying honeypots with ease.

0
Cowralyze Logo

A command-line tool for analyzing Cowrie honeypot log files over time, generating statistics and visualizations from local or remote log data.

0
HoneyMap Logo

Web application for visualizing live GPS locations on an SVG world map using honeypot captures.

0

Stay Updated with Mandos Brief

Get strategic cybersecurity insights in your inbox