Elastichoney Logo

Elastichoney

0
Free
Visit Website

Elastichoney is a simple Elasticsearch honeypot designed to catch attackers exploiting RCE vulnerabilities in Elasticsearch. Binary distributions for most major systems are provided in the Releases. For usage, run './elastichoney -h'. Check the blog post for more details. To run Elastichoney using Docker and Docker Compose, follow the provided steps. Licensed under the MIT License.

FEATURES

ALTERNATIVES

Distributed low interaction honeypot with Agent/Master design supporting various protocol handlers.

Repository of plugins for the Honeycomb honeypot framework

KFSensor is an advanced Windows honeypot system for detecting hackers and worms by simulating vulnerable system services.

Bluetooth Honeypot with monitoring capabilities

A honeypot mimicking Tomcat manager endpoints to log requests and save attacker's WAR files for analysis.

A tool to identify potential subdomain takeovers by checking if a CNAME record resolves to the scope address.

SMTP honeypot tool with configurable response messages, email storage, and automatic information extraction.

Galah is an LLM-powered web honeypot that mimics various web applications by dynamically responding to HTTP requests.

PINNED