Log4Pot Logo

Log4Pot

0
Free
Visit Website

A honeypot designed to detect and capture exploitation attempts of the Log4Shell vulnerability (CVE-2021-44228). It listens on various ports for Log4Shell exploitation, detects exploitation in request lines and headers, downloads exploit payloads recursively, and offers logging to both file and Azure blob storage. To use, install Poetry, clone the GitHub repository, install dependencies, configure parameters in log4pot.conf, and run the tool. It can also be run without external dependencies for basic functionality. For redirecting traffic to Log4Pot, iptables commands can be used.

FEATURES

ALTERNATIVES

Apache 2 based honeypot for detecting and blocking Struts CVE 2017-5638 exploit with added support for content disposition filename parsing vulnerability.

Beelzebub is an advanced honeypot framework for detecting and analyzing cyber attacks, with integration options for OpenAI GPT-3 and deployment on Kubernetes using Helm.

An easy to set up SSH honeypot for logging SSH connections and activity.

Blacknet is a low interaction SSH multi-head honeypot system with logging capabilities.

Kippo is a medium interaction SSH honeypot with fake filesystem and session logging capabilities.

A multiarch honeypot platform supporting 20+ honeypots and offering visualization options and security tools.

HoneyDrive is the premier honeypot Linux distro with over 10 pre-installed honeypot software packages and numerous analysis tools.

A tool to leak git repositories from misconfigured websites