Go0r Logo

Go0r

0
Free
Visit Website

A simple, around 100 lines of code, SSH honeypot written in Golang. The name is based on the Persian proverb 'گریه کردن بر روی گور بدون مرده' (cry over the empty grave) and the word 'goor' (گور means the Grave in Persian). How to use it: - Install by running: go get -u -v github.com/fzerorubigd/go0r - Configuration folder could be $HOME/.config/go0r, /etc/go0r, or ./config - Create a host key using ssh-keygen - Set the port in the config file - Run the application using $GOPATH/bin/go0r Note: Running this as root is dangerous. Run it as nobody on a port > 1024, then use iptables to redirect traffic from port 22 to this app port.

FEATURES

ALTERNATIVES

A low-interaction honeypot that logs IP addresses, usernames, and passwords used by clients connecting via SSH, primarily used for gathering intelligence on brute force attacks.

A tool for bruteforcing subdomains of a given domain

A mini webserver with FTP support for XXE payloads

Beelzebub is an advanced honeypot framework for detecting and analyzing cyber attacks, with integration options for OpenAI GPT-3 and deployment on Kubernetes using Helm.

An Open-source intelligence (OSINT) honeypot that monitors reconnaissance attempts by threat actors and generates actionable intelligence for Blue Teamers.

A tutorial on setting up Dionaea on an EC2 instance in 20 minutes

A modular web application honeypot framework with automation and logging capabilities.

A highly interactive honeypot for observing access from attackers by building easily targeted and compromised web applications, forwarding logs to Google BigQuery for accumulation and visualization.