Skip to content

Latest commit

 

History

History
37 lines (36 loc) · 3.71 KB

Tools.md

File metadata and controls

37 lines (36 loc) · 3.71 KB

My favorites

  • thug - Emulating an automated web client
  • honeybits - Spread information supporting the legitimacy of honeypots.
  • DECEPTICON-BOT - Twitter AI bot designed to support OPSEC and make OSINT more difficult/confusing.
  • portspoof - Service that emulates random service signatures.

S-Type (Sensory)

  • CanaryTokens - A service for injecting beacons into files
  • Web Bug Server - A tool for embedding web bugs inside word processing documents
  • decloak - A tool to identify the real IP address of a web user regardless of proxy settings

C-Type (Countersensory)

  • Cowrie - A medium to high interaction SSH and Telnet honeypot
  • portspoof - Service that emulates random service signatures.
  • Spidertrap - HTTP honeypot. A tool to trap web crawlers and spiders
  • HellPot - HTTP honeypot. From what I understand, this is a more fleshed out version of SpiderTrap.
  • Juggler - Randomize error messages. Based on the notion that an attacker is attempting web attacks and looking for HTTP error responses.

D-Type (Deceptive)

  • Artillery - A blue team tool designed to protect Linux and Windows operating systems. File monitoring, honeypot, email notification, firewall, DOS protection.
  • OpenCanary - A program to host a local CanaryTokens server
  • ADBHoney - Track emulated and real phones connected to this computer
  • thug - Emulating an automated web client
  • HoneyEncryption - Program to fake encryption. Not sure how or if this works, but interesting concept.
  • glutton - Honeypot designed to accept any network connection on any port
  • portspoof - Service that emulates random service signatures.
  • honeybits - Spread information supporting the legitimacy of honeypots

P-Type (Psychological)

  • DECEPTICON-BOT - Twitter AI bot designed to support OPSEC and make OSINT more difficult/confusing.

Lists

Misc

  • HoneyNet Project - Honeypot-focused developer group
  • Amazon Scraper - Amazon product listing scraper (haven't tested this, not sure if it works)
  • CrossLink - LinkedIn scraper. Gather employee names from a specific company.
  • snscraper - Social media scraper focused on profiles. Twitter functionality is broken, not sure about others.
  • hpfeeds - Standardized protocol for honeypot notifications