Strike directory section: Computers Security Honeypots_and_Honeynets Image Mp3 Ftp Kids News
MetaStrike.com, Advanced MetaSearch Engine
Multi Search Add Bookmark! Make MetaStrike Your Homepage




Home:   Computers:   Security:   Honeypots and Honeynets   

Other Category:


Sites:

  •  HoneyNet Project  - http://project.honeynet.org/
     A community of organizations actively researching, developing and deploying Honeynets and sharing the lessons learned.
  •  Honeyd  - http://www.citi.umich.edu/u/provos/honeyd/
     Small daemon that creates virtual hosts on a network (honeypot). Can be used as a virtual honeynet, for network monitoring, or as a spam trap. For *BSD, GNU/Linux, and Solaris.
  •  Honeypots  - http://www.honeypots.net/
     Information covering intrusion detection and prevention systems, research and production honeypots, and incident handling. Also provides general overview of network security issues.
  •  SourceForge.net: Project - HoneyView  - http://sourceforge.net/projects/honeyview
     A tool to analyze honeyd-logfiles of the honeyd-daemon. Generates graphical and textual results from queries against the logfile data.
  •  Deception ToolKit (DTK)  - http://all.net/dtk/index.html
     A toolkit designed to make it appear to attackers as if the system running DTK has a large number of widely known vulnerabilities.
  •  SecurityFocus: Dynamic Honeypots  - http://www.securityfocus.com/infocus/1731
     Honeypots that dynamically learn your network then deploy virtual honeypots that adapt to your network.
  •  An Evening with Berferd  - http://all.net/books/berferd/berferd.html
     A hacker is lured, endured, and studied. One of the first examples of a honeypot. First published in 1992.
  •  MastaHackaWannabeAnalajza  - http://rudolf.sytes.net/en/
     Provides visualization of hack attempts against a honeypot server. Reports include attack intensity over time and attack types. Based on IDS data produced by snort.
  •  RedHat Linux 6.2 Honeypot Analysis  - http://www.holcroft.org/honeypot/
     Incident analysis for a compromised default honeypot installation of RedHat Linux 6.2. Includes design, configuration and log details for the compromised machine.
  •  Honeypots: Monitoring and Forensics Project  - http://honeypots.sourceforge.net/
     Techniques, tools and resources for conducting Honeypot Research and Forensic Investigation. White papers include monitoring VMware honeypots, apache web server honeypots, and VMware honeypot forensics.
  •  Honeypotting with VMware  - http://www.seifried.org/security/ids/20020107-honeypot-vmware-basics.html
     An article about how to use VMware to produce honeypots to catch system intruders.
  •  Deploying and Using Sinkholes  - http://www.arbornetworks.com/research_presentations.php
     Configuring and deploying Sink Hole Routers, which are the network equivalent of a honey pot.
  •  Talisker Honeypots  - http://www.securitywizardry.com/honeypots.htm
     Web page summarizing different commercial and freeware honeypots.
  •  Back Officer Friendly  - http://www.nfr.com/resource/backOfficer.php
     Created to detect when anyone attempts a Back Orifice scan against your computer. Also detects attempted connections to other services, such as Telnet, FTP, SMTP, POP3 and IMAP2.
  •  LaBrea Tarpit  - http://labrea.sourceforge.net/
     A program that creates a tarpit or, as some have called it, a "sticky honeypot".
  •  SecurityFocus: Honeypot Farms  - http://www.securityfocus.com/infocus/1720
     This article is about deploying and managing honeypots in large, distributed environments through the use of Honeypot Farms.
  •  The Bait and Switch Honeypot System  - http://violating.us/projects/baitnswitch/
     A system that redirects all hostile traffic from your production systems to a honeypot that is a partial mirror of your production system. Once switched, the would-be hacker is unknowingly attacking your honeypot instead of the real data.
  •  Bubblegum proxypot  - http://world.std.com/~pacman/proxypot.html
     An open proxy honeypot (proxypot) that pretends to be an open proxy. Designed primarily to catch the mail spammer.
  •  The Distributed Honeypot Project  - http://www.lucidic.net/
     The goal of this project is to organize dispersed honeypots across the Internet and share findings with the security community.
  •  SecurityDocs - Honeypots  - http://www.securitydocs.com/Intrusion_Detection/Honeypots
     Directory of articles, white papers, and documents on honeypots and other security topics.
  •  Honeynet.BR  - http://www.honeynet.org.br/
     Brazilian Honeypots Alliance. Includes tools to summaries honeyd logs, mydoom.pl (A perl script which emulates the backdoor installed by the Mydoom virus), and an OpenBSD LiveCD Honeypot.
  •  Honey Web  - http://honeyweb.sourceforge.net/
     An Active Server Pages (ASP) compliant web server honey pot, that detects common attacks against web servers and logs the requests in a real-time viewer . It can recognize Buffer Overflows , Denial of Service attacks, Directory Transversal attacks, SQL Injection attacks , XSS attacks , Session hijacking attacks.
  •  Honeynet Security Console (HSC)  - http://www.activeworx.org/
     HSC is an analysis tool to view events on your personal honeynet. View and correlate events from Snort, TCPDump, Firewall, Syslog and Sebek logs.
  •  SCADA HoneyNet Project  - http://scadahoneynet.sourceforge.net/
     SCADA HoneyNet Project: Building Honeypots for Industrial Networks (SCADA, DCS, and PLC architectures).
  •  fakeAP  - http://www.blackalchemy.to/project/fakeap/
     Generates thousands of counterfeit 802.11b access points for use as part of a honeypot or to confuse Wardrivers, NetStumblers, Script Kiddies, and other undesirables.
  •  Florida Honeynet Project  - http://www.floridahoneynet.org/
     The Florida Honeynet Project is a not for profit, all volunteer organization dedicated to honeynet research.
  •  Honeywall CDROM  - http://www.honeynet.org/tools/cdrom/
     A honeynet gateway on a bootable CDROM.
  •  B.A.S.T.E.D.  - http://basted.sourceforge.net/
     A program that acts as a honeypot for spammers who use spambots to harvest email addresses from Web sites.
  •  Impost  - http://impost.sourceforge.net/
     Impost can either act as a honey pot and take orders from a Perl script controlling how it responds and communicates with connecting clients; or it can operate as a packet sniffer and monitor incoming data to specified destination port supplied by the command-line arguments (pre-release version available).
  •  WebMaven (Buggy Bank)  - http://www.mavensecurity.com/webmaven
     WebMaven is an intentionally broken web application. It is intended to be used in a safe legal environment (your own host) as a training tool, as a basic benchmark platform to test web application security scanners and as a Honeypot.
  •  spank  - http://spank.sourceforge.net/
     A collection of programs to deploy, run and analyse network and host simulations in IP networks.
  •  Spanish Honeynet Project  - http://www.honeynet.org.es
     Independent non-profit research organization of security professionals dedicated to information security focused on honeynet technologies.
  •  The Team Cymru Darknet Project  - http://www.cymru.com/Darknet/
     A Darknet is a portion of routed, allocated IP space in which no active services or servers seemingly reside. However, there is in fact include at least one server for real-time analysis or post-event network forensics.
  •  Spampoison  - http://www.spampoison.com/
     Website set up to deliver almost infinite numbers of bogus email addresses to email harvesting bots.
  •  Installing a Virtual Honeywall using VMware  - http://www.honeynet.org.es/papers/vhwall/
     This paper explains how to go about configuring VMware to deploy a Honeywall, combining the advantages offered by the Honeywall CDROM and the virtual environments.
  •  Building a GenII Honeynet Gateway  - http://www.honeynet.org.es/papers/honeywall/
     This is a short guide to build a GenII Honeynet Gateway, also called a Honeywall, under Linux, broaching the most common problems and providing several solutions and tips.
  •  Honeyd Control Center  - http://zope.org/Members/Ioan/HoneydCenter
     Honeyd configuration wizard, a SQL Interface, and reports.
  •  SécurIT  - http://iquebec.ifrance.com/securit/
     LogIDS, LogAgent, SécurIT Intrusion Detection Toolkit, and ComLog (a cmd.exe wrapper)
  •  Sombria Honeypot System  - http://www.lac.co.jp/business/sns/intelligence/sombria_e.html
     A honeypot system and "Honeypot Exchange Program."
  •  GHH - The "Google Hack" Honeypot  - http://ghh.sourceforge.net/
     GHH emulates a vulnerable web application by allowing itself to be indexed by search engines. It is hidden from casual page viewers, but is found through the use of a crawler or search engine.
  •  Honeynet.org: Tracking Botnets  - http://www.honeynet.org/papers/bots/
     Paper on the use of honeynets to learn more about botnets. Covers uses of botnets, how they work and how to track them.
  •  Honeyd - WikiSecure  - http://www.wikisecure.com/index.php/Honeyd
     Wikisecure's honeyd page that describes the basic functionality and operation with self-explanatory examples.
  •  thp - Tiny Honeypot  - http://www.alpinista.org/thp/
     A simple honey pot program based on iptables redirects and an xinetd listener.
  •  mwcollect  - http://www.mwcollect.org
     A solution to collect worms and other autonomous spreading malware in a non-native environment like FreeBSD or Linux. Some people consider it a next generation honeypot, however computers running mwcollect cannot actually be infected with the malware.
  •  Honeybee  - http://www.thomas-apel.de/honeybee/
     A tool for semi-automatically creating emulators of network server applications.
  •  The Strider HoneyMonkey Project  - http://research.microsoft.com/HoneyMonkey/
     Microsoft Research project to detect and analyze Web sites hosting malicious code using client-side honeypots.