update lists

This commit is contained in:
2025-07-18 22:22:32 +02:00
parent 55bed3b4a1
commit 5916c5c074
3078 changed files with 331679 additions and 357255 deletions

View File

@@ -1,4 +1,4 @@
 Awesome Honeypots !Awesome Honeypots (https://cdn.rawgit.com/sindresorhus/awesome/d7305f38d29fed78fa85652e3a63e154dd8e8829/media/badge.svg) (https://github.com/sindresorhus/awesome)
 Awesome Honeypots !Awesome Honeypots (https://cdn.rawgit.com/sindresorhus/awesome/d7305f38d29fed78fa85652e3a63e154dd8e8829/media/badge.svg) (https://github.com/sindresorhus/awesome)
A curated list of awesome honeypots, plus related components and much more, divided into categories such as Web, services, and others, with a focus on free and open source projects.
@@ -6,9 +6,9 @@
Discover more awesome lists at sindresorhus/awesome (https://github.com/sindresorhus/awesome).
 Contents
 Contents
- Awesome Honeypots !Awesome Honeypots (https://github.com/sindresorhus/awesome) (#awesome-honeypots-)
- Awesome Honeypots  (#awesome-honeypots-)
- Contents (#contents)
 - Related Lists (#related-lists)
 - Honeypots (#honeypots)
@@ -39,13 +39,15 @@
 - RedisHoneyPot (https://github.com/cypwnpwnsocute/RedisHoneyPot) - High Interaction Honeypot Solution for Redis protocol.
- Web honeypots
 
 - Cloud Active Defense (https://github.com/SAP/cloud-active-defense?tab=readme-ov-file) - Cloud active defense lets you deploy decoys right into your cloud applications, putting adversaries into a dilemma: to hack or not to hack?
 - Express honeypot (https://github.com/christophe77/express-honeypot) - RFI & LFI honeypot using nodeJS and express.
 - EoHoneypotBundle (https://github.com/eymengunay/EoHoneypotBundle) - Honeypot type for Symfony2 forms.
 - Glastopf (https://github.com/mushorg/glastopf) - Web Application Honeypot.
 - Google Hack Honeypot (http://ghh.sourceforge.net) - Designed to provide reconnaissance against attackers that use search engines as a hacking tool against your resources.
 - HellPot (https://github.com/yunginnanet/HellPot) - Honeypot that tries to crash the bots and clients that visit it's location.
 - Laravel Application Honeypot (https://github.com/msurguy/Honeypot) - Simple spam prevention package for Laravel applications.
 - Lophiid (https://github.com/mrheinen/lophiid/) - Distributed web application honeypot to interact with large scale exploitation attempts.
 - Nodepot (https://github.com/schmalle/Nodepot) - NodeJS web application honeypot.
 - PasitheaHoneypot (https://github.com/Marist-Innovation-Lab/PasitheaHoneypot) - RestAPI honeypot.
 - Servletpot (https://github.com/schmalle/servletpot) - Web application Honeypot.
@@ -84,14 +86,15 @@
 - dhp (https://github.com/ciscocsirt/dhp) - Simple Docker Honeypot server emulating small snippets of the Docker HTTP API.
 - DolosHoneypot (https://github.com/Marist-Innovation-Lab/DolosHoneypot) - SDN (software defined networking) honeypot.
 - Ensnare (https://github.com/ahoernecke/ensnare) - Easy to deploy Ruby honeypot.
 - GenAIPot (https://github.com/ls1911/GenAIPot) - The first A.I based open source honeypot. supports POP3 and SMTP protocols and generates content using A.I based on user description.
 - Helix (https://github.com/Zeerg/helix-honeypot) - K8s API Honeypot with Active Defense Capabilities.
 - honeycomb_plugins (https://github.com/Cymmetria/honeycomb_plugins) - Plugin repository for Honeycomb, the honeypot framework by Cymmetria.
 - honeydb (https://honeydb.io/downloads) - Multi-service honeypot that is easy to deploy and configure. Can be configured to send interaction data to to HoneyDB's centralized collectors for access via REST API.
 - honeyntp (https://github.com/fygrave/honeyntp) - NTP logger/honeypot.
 - honeypot-camera (https://github.com/alexbredo/honeypot-camera) - Observation camera honeypot.
 - honeypot-ftp (https://github.com/alexbredo/honeypot-ftp) - FTP Honeypot.
 - honeypots (https://github.com/qeeqbox/honeypots) - 25 different honeypots in a single pypi package! (dns, ftp, httpproxy, http, https, imap, mysql, pop3, postgres, redis, smb, smtp, socks5, ssh, telnet, vnc, mssql, elastic, ldap, 
ntp, memcache, snmp, oracle, sip and irc).
 - honeypots (https://github.com/qeeqbox/honeypots) - 25 different honeypots in a single pypi package! (dns, ftp, httpproxy, http, https, imap, mysql, pop3, postgres, redis, smb, smtp, socks5, ssh, telnet, vnc, mssql, elastic, ldap, ntp, 
memcache, snmp, oracle, sip and irc).
 - honeytrap (https://github.com/honeytrap/honeytrap) - Advanced Honeypot framework written in Go that can be connected with other honeypot software.
 - HoneyPy (https://github.com/foospidy/HoneyPy) - Low interaction honeypot.
 - Honeygrove (https://github.com/UHH-ISS/honeygrove) - Multi-purpose modular honeypot based on Twisted.
@@ -105,6 +108,7 @@
 - RDPy (https://github.com/citronneur/rdpy) - Microsoft Remote Desktop Protocol (RDP) honeypot implemented in Python.
 - SMB Honeypot (https://github.com/r0hi7/HoneySMB) - High interaction SMB service honeypot capable of capturing wannacry-like Malware.
 - Tom's Honeypot (https://github.com/inguardians/toms_honeypot) - Low interaction Python honeypot.
 - Trapster Commmunity (https://github.com/0xBallpoint/trapster-community) - Modural and easy to install Python Honeypot, with comprehensive alerting
 - troje (https://github.com/dutchcoders/troje/) - Honeypot that runs each connection with the service within a separate LXC container.
 - WebLogic honeypot (https://github.com/Cymmetria/weblogic_honeypot) - Low interaction honeypot to detect CVE-2017-10271 in the Oracle WebLogic Server component of Oracle Fusion Middleware.
 - WhiteFace Honeypot (https://github.com/csirtgadgets/csirtg-honeypot) - Twisted based honeypot for WhiteFace.
@@ -125,8 +129,8 @@
 - GasPot (https://github.com/sjhilt/GasPot) - Veeder Root Gaurdian AST, common in the oil and gas industry.
 - SCADA honeynet (http://scadahoneynet.sourceforge.net) - Building Honeypots for Industrial Networks.
 - gridpot (https://github.com/sk4ld/gridpot) - Open source tools for realistic-behaving electric grid honeynets.
 - scada-honeynet (http://www.digitalbond.com/blog/2007/07/24/scada-honeynet-article-in-infragard-publication/) - Mimics many of the services from a popular PLC and better helps SCADA researchers understand potential risks of exposed 
control system devices.
 - scada-honeynet (http://www.digitalbond.com/blog/2007/07/24/scada-honeynet-article-in-infragard-publication/) - Mimics many of the services from a popular PLC and better helps SCADA researchers understand potential risks of exposed control 
system devices.
- Other/random
@@ -166,8 +170,8 @@
- Distributed sensor deployment
 - Community Honey Network (https://communityhoneynetwork.readthedocs.io/en/stable/) - CHN aims to make deployments honeypots and honeypot management tools easy and flexible. The default deployment method uses Docker Compose and Docker
to deploy with a few simple commands.
 - Community Honey Network (https://communityhoneynetwork.readthedocs.io/en/stable/) - CHN aims to make deployments honeypots and honeypot management tools easy and flexible. The default deployment method uses Docker Compose and Docker to deploy
with a few simple commands.
 - Modern Honey Network (https://github.com/threatstream/mhn) - Multi-snort and honeypot sensor management, uses a network of VMs, small footprint SNORT installations, stealthy dionaeas, and a centralized server for management.
- Network Analysis Tool
@@ -407,7 +411,7 @@
- Spamtrap
 - Mail::SMTP::Honeypot (https://metacpan.org/pod/release/MIKER/Mail-SMTP-Honeypot-0.11/Honeypot.pm) - Perl module that appears to provide the functionality of a standard SMTP server.
 - Mailoney (https://github.com/awhitehatter/mailoney) - SMTP honeypot, Open Relay, Cred Harvester written in python.
 - Mailoney (https://github.com/phin3has/mailoney) - SMTP honeypot written in python.
 - SendMeSpamIDS.py (https://github.com/johestephan/VerySimpleHoneypot) - Simple SMTP fetch all IDS and analyzer.
 - Shiva (https://github.com/shiva-spampot/shiva) - Spam Honeypot with Intelligent Virtual Analyzer.
- **Shiva The Spam Honeypot Tips And Tricks For Getting It Up And Running** (https://www.pentestpartners.com/security-blog/shiva-the-spam-honeypot-tips-and-tricks-for-getting-it-up-and-running/)
@@ -457,8 +461,8 @@
- Honeytokens
 - CanaryTokens (https://github.com/thinkst/canarytokens) - Self-hostable honeytoken generator and reporting dashboard; demo version available at CanaryTokens.org (https://canarytokens.org/generate).
 - Honeybits (https://github.com/0x4D31/honeybits) - Simple tool designed to enhance the effectiveness of your traps by spreading breadcrumbs and honeytokens across your production servers and workstations to lure the attacker toward 
your honeypots.
 - Honeybits (https://github.com/0x4D31/honeybits) - Simple tool designed to enhance the effectiveness of your traps by spreading breadcrumbs and honeytokens across your production servers and workstations to lure the attacker toward your 
honeypots.
 - Honeyλ (HoneyLambda) (https://github.com/0x4D31/honeylambda) - Simple, serverless application designed to create and monitor URL honeytokens, on top of AWS Lambda and Amazon API Gateway.
 - dcept (https://github.com/secureworks/dcept) - Tool for deploying and detecting use of Active Directory honeytokens.
 - honeyku (https://github.com/0x4D31/honeyku) - Heroku-based web honeypot that can be used to create and monitor fake HTTP endpoints (i.e. honeytokens).
@@ -526,8 +530,8 @@
 - HoneyMap (https://github.com/fw42/honeymap) - Real-time websocket stream of GPS events on a fancy SVG world map.
 - HoneyStats (https://sourceforge.net/projects/honeystats/) - Statistical view of the recorded activity on a Honeynet.
 - HpfeedsHoneyGraph (https://github.com/yuchincheng/HpfeedsHoneyGraph) - Visualization app to visualize hpfeeds logs.
 - IVRE (https://github.com/ivre/ivre) - Network recon framework, published by @cea-sec & @ANSSI-FR. Build your own, self-hosted and fully-controlled alternatives to Criminalip / Shodan / ZoomEye / Censys and GreyNoise, run your 
Passive DNS service, collect and analyse network intelligence from your sensors, and much more!
 - IVRE (https://github.com/ivre/ivre) - Network recon framework, published by @cea-sec & @ANSSI-FR. Build your own, self-hosted and fully-controlled alternatives to Criminalip / Shodan / ZoomEye / Censys and GreyNoise, run your Passive DNS 
service, collect and analyse network intelligence from your sensors, and much more!
 - Kippo stats (https://github.com/mfontani/kippo-stats) - Mojolicious app to display statistics for your kippo SSH honeypot.
 - Kippo-Graph (https://bruteforcelab.com/kippo-graph) - Full featured script to visualize statistics from a Kippo SSH honeypot.
 - The Intelligent HoneyNet (https://github.com/jpyorre/IntelligentHoneyNet) - Create actionable information from honeypots.
@@ -541,11 +545,12 @@
- Deployment
 - Dionaea and EC2 in 20 Minutes (http://andrewmichaelsmith.com/2012/03/dionaea-honeypot-on-ec2-in-20-minutes/) - Tutorial on setting up Dionaea on an EC2 instance.
 - Using a Raspberry Pi honeypot to contribute data to DShield/ISC (https://isc.sans.edu/diary/22680) - The Raspberry Pi based system will allow us to maintain one code base that will make it easier to collect rich logs beyond firewall
logs.
 - Using a Raspberry Pi honeypot to contribute data to DShield/ISC (https://isc.sans.edu/diary/22680) - The Raspberry Pi based system will allow us to maintain one code base that will make it easier to collect rich logs beyond firewall logs.
 - honeypotpi (https://github.com/free5ty1e/honeypotpi) - Script for turning a Raspberry Pi into a HoneyPot Pi.
- Research Papers
 - Honeypot research papers (https://github.com/shbhmsingh72/Honeypot-Research-Papers) - PDFs of research papers on honeypots.
 - vEYE (https://link.springer.com/article/10.1007%2Fs10115-008-0137-3) - Behavioral footprinting for self-propagating worm detection and profiling.
honeypots Github: https://github.com/paralax/awesome-honeypots