SSHoney is an SSH honeypot designed to log SSH connection attempts on a given port. It listens on a non-privileged port (default 2222), pretends to be an SSH server, and logs connection details like IP, username, password, and SSH client version to stdout, syslog, or a specified log file. Basic setup involves installing the source and binary, ensuring the binary path is in the system path, and generating a host key.
FEATURES
ALTERNATIVES
Apache 2 based honeypot for detecting and blocking Struts CVE 2017-5638 exploit with added support for content disposition filename parsing vulnerability.
A simplified UI for showing honeypot alarms for the DTAG early warning system
A low-interaction honeypot that logs IP addresses, usernames, and passwords used by clients connecting via SSH, primarily used for gathering intelligence on brute force attacks.
PINNED

InfoSecHired
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.

Mandos Brief Newsletter
A weekly newsletter providing cybersecurity leadership insights, industry updates, and strategic guidance for security professionals advancing to management positions.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.

Wiz
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.