BW-Pot Logo

BW-Pot

BW-Pot is an interactive web application honeypot that deploys vulnerable applications to attract and monitor HTTP/HTTPS attacks, with automated logging to Google BigQuery for analysis.

27
Security Operations
Free
Visit website
0

BW-Pot Description

BW-Pot (Breakable Web applications honeyPot) is an interactive honeypot system designed to monitor and analyze HTTP/HTTPS attacks by deploying vulnerable web applications as bait. The system creates easily compromised web application environments that attract attackers, allowing security researchers to observe attack patterns and techniques. It includes multiple vulnerable web applications such as WordPress and phpMyAdmin to simulate realistic attack targets. Key features include automatic daily restoration to clean environments, ensuring consistent honeypot states for ongoing monitoring. The system captures comprehensive logs and forwards them to Google BigQuery for centralized storage and analysis. Real-time log integration enables immediate visibility into attack activities. Network traffic analysis capabilities include automatic packet capture file generation, which can be downloaded and analyzed using tools like Wireshark. The system implements automatic log rotation to manage storage efficiently. BW-Pot operates effectively on low-specification servers, requiring only 2GB RAM and 10GB SSD storage. It uses Docker and Docker-Compose for containerized deployment, making installation and management straightforward. The architecture supports integration with Google Cloud Platform for log storage and visualization through BigQuery's web interface. Users can create custom dashboards and execute SQL queries to analyze collected attack data. The system is designed for security researchers, threat hunters, and organizations seeking to understand attack methodologies targeting web applications.

FEATURED

Proton Pass Logo

Password manager with end-to-end encryption and identity protection features

NordVPN Logo

VPN service providing encrypted internet connections and privacy protection

Mandos Fractional CISO Services Logo

Fractional CISO services for B2B companies to accelerate sales and compliance

Stay Updated with Mandos Brief

Get the latest cybersecurity updates in your inbox

POPULAR

RoboShadow Logo

Automated vulnerability assessment and remediation platform

10
TestSavantAI Logo

Security platform that provides protection, monitoring and governance for enterprise generative AI applications and LLMs against various threats including prompt injection and data poisoning.

5
Cybersec Feeds Logo

A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.

5
Fabric Platform by BlackStork Logo

Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.

5
Mandos Brief Newsletter Logo

A weekly newsletter providing cybersecurity leadership insights, industry updates, and strategic guidance for security professionals advancing to management positions.

5
View Popular Tools →