Low to medium Ubuntu Core honeypot (https://www.kitploit.com/search/label/HoneyPot) coded in Python.
Features
Optional Login (https://www.kitploit.com/search/label/Login) Prompt Logs commands used and IP addresses Customize MOTD, Port, Hostname and how many clients can connect at once (default is unlimited) Save and load config Add support to a plethora of commands
Todo
Packet Capture Better Logging Service Geolocation Email Alerts Insights such as charts & graphs Add Default Configurations Optimize / Fix Code
How to run
sudo apt update && sudo apt upgrade -y
python3 dystopy.py
Command Line Arguments
bind to --motd MOTD, -m MOTD specify the message of the day --max MAX, -M MAX max (https://www.kitploit.com/search/label/Max) number of clients allowed to be connected at once. --username USERNAME, -u USERNAME username for fake login prompt and the user for the honeypot session --password PASSWORD, -p PASSWORD password for fake login prompt --hostname HOSTNAME, -H HOSTNAME hostname of the honeypot --localhost, -L host honeypot on localhost --save SAVE, -s SAVE save config to a json (https://www.kitploit.com/search/label/JSON) file --load LOAD, -l LOAD load a config file ">usage: dystopia.py [-h] [--port PORT] [--motd MOTD] [--max MAX] [--username USERNAME] [--password PASSWORD]
[--hostname HOSTNAME] [--localhost] [--save SAVE] [--load LOAD]
Dystopia | A python honeypot.
optional arguments:
-h, --help show this help message and exit
--port PORT, -P PORT specify a port to bind to
--motd MOTD, -m MOTD specify the message of the day
--max MAX, -M MAX max number of clients allowed to be connected at once.
--username USERNAME, -u USERNAME
username for fake login prompt and the user for the honeypot session
--password PASSWORD, -p PASSWORD
password for fake login prompt
--hostname HOSTNAME, -H HOSTNAME
hostname of the honeypot
--localhost, -L host honeypot on localhost
--save SAVE, -s SAVE save config to a json file
--load LOAD, -l LOAD load a config file
How to add Support for More Commands
You can add support to new commands by editing the file "commands.json". The format is command:output
for eg
{
"dog":"Dog command activated!"
}
___________________________
@hacking_Attack
@Hacking_Video
Features
Optional Login (https://www.kitploit.com/search/label/Login) Prompt Logs commands used and IP addresses Customize MOTD, Port, Hostname and how many clients can connect at once (default is unlimited) Save and load config Add support to a plethora of commands
Todo
Packet Capture Better Logging Service Geolocation Email Alerts Insights such as charts & graphs Add Default Configurations Optimize / Fix Code
How to run
sudo apt update && sudo apt upgrade -y
python3 dystopy.py
Command Line Arguments
bind to --motd MOTD, -m MOTD specify the message of the day --max MAX, -M MAX max (https://www.kitploit.com/search/label/Max) number of clients allowed to be connected at once. --username USERNAME, -u USERNAME username for fake login prompt and the user for the honeypot session --password PASSWORD, -p PASSWORD password for fake login prompt --hostname HOSTNAME, -H HOSTNAME hostname of the honeypot --localhost, -L host honeypot on localhost --save SAVE, -s SAVE save config to a json (https://www.kitploit.com/search/label/JSON) file --load LOAD, -l LOAD load a config file ">usage: dystopia.py [-h] [--port PORT] [--motd MOTD] [--max MAX] [--username USERNAME] [--password PASSWORD]
[--hostname HOSTNAME] [--localhost] [--save SAVE] [--load LOAD]
Dystopia | A python honeypot.
optional arguments:
-h, --help show this help message and exit
--port PORT, -P PORT specify a port to bind to
--motd MOTD, -m MOTD specify the message of the day
--max MAX, -M MAX max number of clients allowed to be connected at once.
--username USERNAME, -u USERNAME
username for fake login prompt and the user for the honeypot session
--password PASSWORD, -p PASSWORD
password for fake login prompt
--hostname HOSTNAME, -H HOSTNAME
hostname of the honeypot
--localhost, -L host honeypot on localhost
--save SAVE, -s SAVE save config to a json file
--load LOAD, -l LOAD load a config file
How to add Support for More Commands
You can add support to new commands by editing the file "commands.json". The format is command:output
for eg
{
"dog":"Dog command activated!"
}
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
Leading source of security tools, hacking tools, cybersecurity and network security. Learn about new tools and updates in one place.
Download Dystopia (https://github.com/Drew-Alleman/dystopia)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Third thumb build?
Check this awesome project! Does anyone know if there is a Ressource of how to build one on your own?
https://www.daniclodedesign.com/thethirdthumb
submitted by /u/filmpromunich
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Third thumb build?
Check this awesome project! Does anyone know if there is a Ressource of how to build one on your own?
https://www.daniclodedesign.com/thethirdthumb
submitted by /u/filmpromunich
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Third thumb build?
Check this awesome project! Does anyone know if there is a Ressource of how to build one on your own? https://www.daniclodedesign.com/thethirdthumb
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
People living very unsecure life these days. Always avoid public computers.
https://external-preview.redd.it/TnyfRke9FUwORWBgnEVKYuFuf1VtnFEVIq6e6Ndq27o.jpg?width=320&crop=smart&auto=webp&s=3b5eb47efb8524e90df35ca743489aec3b64d735 submitted by /u/bugswriter
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
People living very unsecure life these days. Always avoid public computers.
https://external-preview.redd.it/TnyfRke9FUwORWBgnEVKYuFuf1VtnFEVIq6e6Ndq27o.jpg?width=320&crop=smart&auto=webp&s=3b5eb47efb8524e90df35ca743489aec3b64d735 submitted by /u/bugswriter
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
People living very unsecure life these days. Always avoid public...
Posted in r/hacking by u/bugswriter • 3 points and 0 comments
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
How was this News Hack Done?
https://www.youtube.com/watch?v=eOZpQq_VYcI
submitted by /u/Huge_Feeling_5074
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
How was this News Hack Done?
https://www.youtube.com/watch?v=eOZpQq_VYcI
submitted by /u/Huge_Feeling_5074
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
How was this News Hack Done?
[https://www.youtube.com/watch?v=eOZpQq\_VYcI](https://www.youtube.com/watch?v=eOZpQq_VYcI)
"Maintaining access" Phase
https://www.reddit.com/r/Pentesting/comments/nmlo5a/maintaining_access_phase/
Currently learning about pen testing and there is a phase called "Maintaining access" I can understand why a unethical hacker would like to maintain access but not a ethical hacker/pen tester for a company? Could anyone explain this for me thank you submitted by /u/Axolotlfc (https://www.reddit.com/user/Axolotlfc)
[link] (https://www.reddit.com/r/Pentesting/comments/nmlo5a/maintaining_access_phase/) [comments] (https://www.reddit.com/r/Pentesting/comments/nmlo5a/maintaining_access_phase/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/Pentesting/comments/nmlo5a/maintaining_access_phase/
Currently learning about pen testing and there is a phase called "Maintaining access" I can understand why a unethical hacker would like to maintain access but not a ethical hacker/pen tester for a company? Could anyone explain this for me thank you submitted by /u/Axolotlfc (https://www.reddit.com/user/Axolotlfc)
[link] (https://www.reddit.com/r/Pentesting/comments/nmlo5a/maintaining_access_phase/) [comments] (https://www.reddit.com/r/Pentesting/comments/nmlo5a/maintaining_access_phase/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
"Maintaining access" Phase
Currently learning about pen testing and there is a phase called "Maintaining access" I can understand why a unethical hacker would like to...
Deep Web
I downloaded a file from anonfiles.com, is there a chance of getting into legal trouble?
I downloaded a rar, and it was a video I stopped few sec later when I realized it was CP/hurtcore (actually a part of daisys destruction), I cant tell how sick I feel right now. Ofc I deleted it from my device and sent a request immediately to anonfiles to delete it over their abuse report system. But now Im anxious, I could get into legal trouble anyways. Terms of use on the site says „We are strong advocates of privacy & do not log downloads.“ Am I safe?
submitted by /u/notathrowawaynr167
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
I downloaded a file from anonfiles.com, is there a chance of getting into legal trouble?
I downloaded a rar, and it was a video I stopped few sec later when I realized it was CP/hurtcore (actually a part of daisys destruction), I cant tell how sick I feel right now. Ofc I deleted it from my device and sent a request immediately to anonfiles to delete it over their abuse report system. But now Im anxious, I could get into legal trouble anyways. Terms of use on the site says „We are strong advocates of privacy & do not log downloads.“ Am I safe?
submitted by /u/notathrowawaynr167
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
I downloaded a file from anonfiles.com, is there a chance of...
I downloaded a rar, and it was a video I stopped few sec later when I realized it was CP/hurtcore (actually a part of daisys destruction), I cant...
hacking: security in practice
What do you define as a script kiddie?
I see a lot of security professionals using Burp Suite and Nmap, but I wonder are they script kiddies?
submitted by /u/Least_Protection_288
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
What do you define as a script kiddie?
I see a lot of security professionals using Burp Suite and Nmap, but I wonder are they script kiddies?
submitted by /u/Least_Protection_288
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
What do you define as a script kiddie?
I see a lot of security professionals using Burp Suite and Nmap, but I wonder are they script kiddies?
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Malvertising Campaign On Google Distributed Trojanized AnyDesk Installer
https://external-preview.redd.it/0lW663gYvMnqjUD5MdIiYe3pnroW577J1vbMr0OwOYw.jpg?width=640&crop=smart&auto=webp&s=77e25fb1ebd48f1ddef5a6ec2986ca2d4a9aa504 submitted by /u/CodePerfect
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Malvertising Campaign On Google Distributed Trojanized AnyDesk Installer
https://external-preview.redd.it/0lW663gYvMnqjUD5MdIiYe3pnroW577J1vbMr0OwOYw.jpg?width=640&crop=smart&auto=webp&s=77e25fb1ebd48f1ddef5a6ec2986ca2d4a9aa504 submitted by /u/CodePerfect
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Malvertising Campaign On Google Distributed Trojanized AnyDesk...
Posted in r/hacking by u/CodePerfect • 1 point and 0 comments
hacking: security in practice
Is it actually possible to hack the servers at area 51?
Like how would you even start if you did?
submitted by /u/VSK-1
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Is it actually possible to hack the servers at area 51?
Like how would you even start if you did?
submitted by /u/VSK-1
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Is it actually possible to hack the servers at area 51?
Like how would you even start if you did?
Where can I find pentest reports similar to reports from Cure53?
https://www.reddit.com/r/Pentesting/comments/nmpkx9/where_can_i_find_pentest_reports_similar_to/
Cure53 published a lot of their pentest reports on their website. Can someone recommend me other team that make their pentest reports public too. submitted by /u/trieulieuf9 (https://www.reddit.com/user/trieulieuf9)
[link] (https://www.reddit.com/r/Pentesting/comments/nmpkx9/where_can_i_find_pentest_reports_similar_to/) [comments] (https://www.reddit.com/r/Pentesting/comments/nmpkx9/where_can_i_find_pentest_reports_similar_to/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/Pentesting/comments/nmpkx9/where_can_i_find_pentest_reports_similar_to/
Cure53 published a lot of their pentest reports on their website. Can someone recommend me other team that make their pentest reports public too. submitted by /u/trieulieuf9 (https://www.reddit.com/user/trieulieuf9)
[link] (https://www.reddit.com/r/Pentesting/comments/nmpkx9/where_can_i_find_pentest_reports_similar_to/) [comments] (https://www.reddit.com/r/Pentesting/comments/nmpkx9/where_can_i_find_pentest_reports_similar_to/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
Where can I find pentest reports similar to reports from Cure53?
Cure53 published a lot of their pentest reports on their website. Can someone recommend me other team that make their pentest reports public too.
New sophisticated email-based attack from NOBELIUM - Microsoft Security
https://www.reddit.com/r/redteamsec/comments/nmrnjs/new_sophisticated_emailbased_attack_from_nobelium/
submitted by /u/dmchell (https://www.reddit.com/user/dmchell)
[link] (https://www.microsoft.com/security/blog/2021/05/27/new-sophisticated-email-based-attack-from-nobelium/) [comments] (https://www.reddit.com/r/redteamsec/comments/nmrnjs/new_sophisticated_emailbased_attack_from_nobelium/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/redteamsec/comments/nmrnjs/new_sophisticated_emailbased_attack_from_nobelium/
submitted by /u/dmchell (https://www.reddit.com/user/dmchell)
[link] (https://www.microsoft.com/security/blog/2021/05/27/new-sophisticated-email-based-attack-from-nobelium/) [comments] (https://www.reddit.com/r/redteamsec/comments/nmrnjs/new_sophisticated_emailbased_attack_from_nobelium/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
New sophisticated email-based attack from NOBELIUM - Microsoft...
Posted in r/redteamsec by u/dmchell • 1 point and 0 comments
Re-Checking Your Pulse: Updates on Chinese APT Actors Compromising Pulse Secure VPN Devices
https://www.reddit.com/r/redteamsec/comments/nmrx7r/rechecking_your_pulse_updates_on_chinese_apt/
submitted by /u/dmchell (https://www.reddit.com/user/dmchell)
[link] (https://www.fireeye.com/blog/threat-research/2021/05/updates-on-chinese-apt-compromising-pulse-secure-vpn-devices.html) [comments] (https://www.reddit.com/r/redteamsec/comments/nmrx7r/rechecking_your_pulse_updates_on_chinese_apt/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/redteamsec/comments/nmrx7r/rechecking_your_pulse_updates_on_chinese_apt/
submitted by /u/dmchell (https://www.reddit.com/user/dmchell)
[link] (https://www.fireeye.com/blog/threat-research/2021/05/updates-on-chinese-apt-compromising-pulse-secure-vpn-devices.html) [comments] (https://www.reddit.com/r/redteamsec/comments/nmrx7r/rechecking_your_pulse_updates_on_chinese_apt/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
Re-Checking Your Pulse: Updates on Chinese APT Actors Compromising...
Posted in r/redteamsec by u/dmchell • 3 points and 0 comments
Deep Web
What are the best banks in L.A. you guys have had luck with?
Bank of Hope? BOA? Chase? Etc
submitted by /u/Purplewang212
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
What are the best banks in L.A. you guys have had luck with?
Bank of Hope? BOA? Chase? Etc
submitted by /u/Purplewang212
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
What are the best banks in L.A. you guys have had luck with?
Bank of Hope? BOA? Chase? Etc