DShield Docker Logo

DShield Docker

0
Free
Visit Website

This Docker container starts a SSH honeypot (based on Cowrie) and enables the DShield output module to report statistics to the SANS ISC DShield project. Building the image: # git clone https://github.com/xme/dshield-docker # cd dshield-docker # docker build -t dshield/honeypot . Running the image: First, create a configuration file which will contain your DShield account details: # cat env.txt DSHIELD_UID=xxxxxxxxxx DSHIELD_APIKEY=xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx DSHIELD_EMAIL=xxxxxxxxxxxxxxxxxxx Your credentials will be validated and the honeyport properly configured. Don't forget to register[1] if you don't already have an account. [1] https://www.dshield.org/register.html Boot the container: # docker run -d -p 2222:2222 --env-file=env.txt --restart=always --name dshield dshield/honeypot b56e526b6f7c9b6cb419245757b0586f73d7e99089fa93409f3626122990505a # docker logs dshield Validating provided credentials... API key verification succeeded! Starting cowrie... The honeypot is listening to port

FEATURES

ALTERNATIVES

Django based web application for network traffic analysis with protocol handling capabilities.

An extended traceroute tool for CSIRT operators with advanced features.

A tool for taking a list of resolved subdomains and outputting any corresponding CNAMES en masse.

Tool for setting up Glutton, a cybersecurity tool for monitoring SSH traffic.

WireGuard is a fast, simple, and secure VPN that uses cutting-edge cryptography, designed for ease of use and performance.

A program to log login attempts on Telnet (port 23) and track the Mirai botnet

Netis Cloud Probe is an open source project for capturing and analyzing network packets across different machines.

Fake SSH server that sends push notifications for login attempts