
Einfach zu konfigurierender Honeypot für Blue Team

Honeytrap (auch bekannt als h0neytr4p) ist ein einfach zu konfigurierender und bereitzustellender Honeypot zum Schutz vor Web-Recon und Exploits.
Blue Teams können für jede Schwachstelle, jeden Exploit oder jede Recon-Technik eine trap erstellen, sie im /traps-Ordner ablegen und h0neytr4p neu starten. Dadurch wird die Konfiguration automatisch neu geladen und h0neytr4p gestartet.
h0neytr4p wurde hauptsächlich entwickelt, um die Mühsal der Erstellung einer anfälligen Anwendung für öffentlich zugängliche Honeypots zu beseitigen. Auch wenn die Erstellung einer durchgängig anfälligen Anwendung zweifellos ihre eigenen Vorteile haben mag, brauchen wir ein flexibles, agiles Framework, um die berüchtigten Bösewichte zu fangen. Einige der häufigsten Anwendungsfälle sind:
git clone https://github.com/t3chn0m4g3/h0neytr4p
cd h0neytr4p
docker compose build
docker compose up
/$$ /$$$$$$ /$$ /$$ /$$
| $$ /$$$_ $$ | $$ | $$ | $$
| $$$$$$$ | $$$$\ $$ /$$$$$$$ /$$$$$$ /$$ /$$ /$$$$$$ /$$$$$$ | $$ | $$ /$$$$$$
| $$__ $$| $$ $$ $$| $$__ $$ /$$__ $$| $$ | $$|_ $$_/ /$$__ $$| $$$$$$$$ /$$__ $$
| $$ \ $$| $$\ $$$$| $$ \ $$| $$$$$$$$| $$ | $$ | $$ | $$ \__/|_____ $$| $$ \ $$
| $$ | $$| $$ \ $$$| $$ | $$| $$_____/| $$ | $$ | $$ /$$| $$ | $$| $$ | $$
| $$ | $$| $$$$$$/| $$ | $$| $$$$$$$| $$$$$$$ | $$$$/| $$ | $$| $$$$$$$/
|__/ |__/ \______/ |__/ |__/ \_______/ \____ $$ \___/ |__/ |__/| $$____/
/$$ | $$ | $$
| $$$$$$/ [ v0.3 ] | $$
\______/ |__/
Built by a Red team, with <3
Built by zer0p1k4chu & g0dsky (https://github.com/pbssubhash/h0neytr4p)
Adjusted for T-Pot by t3chn0m4g3 (https://github.com/t3chn0m4g3/h0neytr4p)
[ Traps folder ] -> [ traps/ ]
[ Logfile ] -> [ log/log.json ]
[ Payloads folder ] -> [ /opt/h0neytr4p/payloads/ ]
[ Catch all payloads ] -> [ false ]
[ Payload multipart limit ] -> [ 103424 ]
[ Payload other limit ] -> [ 11264 ]
Logging is configured and ready.
Payload folder is configured and ready.
[~>] Loaded 31 traps on Port:443. Let's get the ball rolling!