phpMyAdmin Honeypot Logo

phpMyAdmin Honeypot

0
Free
Visit Website

Probably one of the smallest and simplest web honeypots out there, requiring a web server running Apache, the ability to change file permissions, basic knowledge of HTML and PHP, and about 30 minutes of free time. For automated alert generation, access to a Log Manager / SIEM is recommended. Installation involves uploading the /phpmyadmin-interactive/ folder to the root of the web directory, changing the folder name to /phpmyadmin/, adjusting permissions on /phpmyadmin/log.txt, ensuring all contents are owned by the 'web user', and adding specific lines to the robots.txt file to prevent indexing.

FEATURES

ALTERNATIVES

Script for turning a Raspberry Pi into a Honey Pot Pi with various monitoring and logging capabilities.

A tool to declutter URL lists for crawling and pentesting

A crawler-based low-interaction client honeypot for exposing website threats.

A highly interactive honeypot for observing access from attackers by building easily targeted and compromised web applications, forwarding logs to Google BigQuery for accumulation and visualization.

OpenCanary is a multi-protocol network honeypot with low resource requirements and alerting capabilities.

HellPot is an endless honeypot that sends unruly HTTP bots to hell with grave consequences.

A Go-based honeypot server for detecting and logging attacker activity

Blacknet is a low interaction SSH multi-head honeypot system with logging capabilities.

PINNED

ImmuniWeb® Discovery Logo

ImmuniWeb® Discovery

ImmuniWeb Discovery is an attack surface management platform that continuously monitors an organization's external digital assets for security vulnerabilities, misconfigurations, and threats across domains, applications, cloud resources, and the dark web.

Attack Surface Management
InfoSecHired Logo

InfoSecHired

An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.

Resources
Mandos Brief Newsletter Logo

Mandos Brief Newsletter

A weekly newsletter providing cybersecurity leadership insights, industry updates, and strategic guidance for security professionals advancing to management positions.

Resources
Checkmarx SCA Logo

Checkmarx SCA

A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Application Security
Check Point CloudGuard WAF Logo

Check Point CloudGuard WAF

A cloud-native web application and API security solution that uses contextual AI to protect against known and zero-day threats without signature-based detection.

Application Security
Orca Security Logo

Orca Security

A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

Cloud Security
DryRun Logo

DryRun

A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.

Application Security
Wiz Logo

Wiz

Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.

Cloud Security