Elastichoney is a simple Elasticsearch honeypot designed to catch attackers exploiting RCE vulnerabilities in Elasticsearch. Binary distributions for most major systems are provided in the Releases. For usage, run './elastichoney -h'. Check the blog post for more details. To run Elastichoney using Docker and Docker Compose, follow the provided steps. Licensed under the MIT License.
FEATURES
SIMILAR TOOLS
A plugin repository that extends the Honeycomb honeypot framework with additional features and capabilities for enhanced threat detection and analysis.
An SDN honeypot tool for detecting and analyzing malicious activities in Software-Defined Networking environments.
A low-interaction SSH authentication logging honeypot that logs all authentication attempts in JSON format.
An Apache 2 based honeypot with detection capabilities specifically designed to identify and analyze Struts CVE-2017-5638 exploitation attempts.
A WordPress plugin that logs failed login attempts to help monitor unauthorized access attempts on WordPress websites.