how-to-setup-a-honeypot
malware-samples
how-to-setup-a-honeypot | malware-samples | |
---|---|---|
6 | 3 | |
139 | 1,501 | |
- | - | |
0.0 | 0.0 | |
almost 2 years ago | over 2 years ago | |
- | - |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
how-to-setup-a-honeypot
-
How do I ensure safety when making a honeypot?
To start off, I intend to follow this really detailed rundown of how to create and secure my own honeypot https://github.com/Nirusu/how-to-setup-a-honeypot. Something I continue to worry about is how do I guarantee the threat actors I catch snooping aren't able to pivot or move laterally? Another concern I have is making sure whatever malicious actors go through my router, aren't able to infect anything. Is that just the extra risk you take in doing this?
- How to setup a honeypot with an IDS, ELK and TLS traffic inspection
malware-samples
-
TIL that in 2019, a Windows XP computer infected with six types of malware was sold at an art auction for 1.3 million dollars.
Because it's so hard to get samples of famous widespread malware. https://github.com/fabrimagic72/malware-samples/tree/master/Ransomware/Wannacry
- Any ideas on a good Malware Archives
-
Cylance not detecting EICAR ... RLY BB?
This is the sample I used, https://github.com/fabrimagic72/malware-samples/tree/master/Ransomware/Petya again keep it mind it failed under a VirtualBox VM running on OSX. The Windows ISO used was W10_20H2_v2_International_32bit from https://tb.rg-adguard.net/public.php I have thus far been unable to replicate this on W10 machine, but I stay away from VirtualBox as I like VMWare much more.
What are some alternatives?
elk-pi - Elk Audio OS binary images for Raspberry Pi
awesome-malware-analysis - Defund the Police.
elkpi-sdk - Yocto cross-compiling toolchains for Elk on Raspberry Pi 3 32 bit
theZoo - A repository of LIVE malwares for your own joy and pleasure. theZoo is a project created to make the possibility of malware analysis open and available to the public.
tpotce - 🍯 T-Pot - The All In One Honeypot Platform 🐝 [Moved to: https://github.com/telekom-security/tpotce]
DDOS-RootSec - DDOS Archive by RootSec (Scanners, BotNets (Mirai and QBot Premium & Normal and more), Exploits, Methods, Sniffers)
SplunkDashboards - Collection of Dashboards for Threat Hunting and more!
Malware-Sample-Sources - Malware Sample Sources
tpotce - 🍯 T-Pot - The All In One Honeypot Platform 🐝
MalwareDatabase - This repository is one of a few malware collections on the GitHub.
MalwareSourceCode - Collection of malware source code for a variety of platforms in an array of different programming languages.
malware-samples - Malware samples, analysis exercises and other interesting resources.