Elastichoney Logo

Elastichoney

0
Free
Visit Website

Elastichoney is a simple Elasticsearch honeypot designed to catch attackers exploiting RCE vulnerabilities in Elasticsearch. Binary distributions for most major systems are provided in the Releases. For usage, run './elastichoney -h'. Check the blog post for more details. To run Elastichoney using Docker and Docker Compose, follow the provided steps. Licensed under the MIT License.

FEATURES

ALTERNATIVES

Ansible role for deploying and managing Bifrozt honeypots

An LLM-based honeypot file system creator that generates realistic file systems and configurations to lure attackers and improve analyst engagement.

SHIVA: Spam Honeypot with Intelligent Virtual Analyzer for capturing and analyzing spam data.

Helix is a versatile honeypot designed to mimic the behavior of various protocols including Kubernetes API server, HTTP, TCP, and UDP.

A tool for bruteforcing subdomains of a given domain

An automation framework for subdomain bruteforcing

Parse Cowrie honeypot logs into a Neo4j database.

A low-interaction honeypot to detect and analyze attempts to exploit the CVE-2017-10271 vulnerability in Oracle WebLogic Server