Sunday, 21 September 2014

Modern Honeypot Network

Lots of work to set up

http://threatstream.com/blog/mhn-modern-honey-network



Try to pop it into a script to automate it


#!/bin/bash

# MHN Getting started CEM 22/Sept/2014

cd /opt/
sudo apt-get install git -y
sudo git clone https://github.com/threatstream/mhn.git
cd mhn/scripts/
sudo ./install_hpfeeds.sh
sudo ./install_mnemosyne.sh
sudo ./install_honeymap.sh

sudo ./install_mhnserver.sh






Deploy


Then on Terminal Command Line



but then






to do

Submit Norman

https://github.com/threatstream/mhn/issues/46





Wednesday, 17 September 2014

Security Onion





sudo vi /etc/nsm/pulledpork/disablesid.conf

# Disable the GPL SNMP public access udp signature1:2101411

sudo /usr/bin/rule-update

sudo vi /etc/nsm/securityonion.conf

DAYSTOKEEP = 1

sudo sguil-db-purge


sudo /usr/bin/rule-update








----Thanks---

https://code.google.com/p/security-onion/wiki/ManagingAlerts





Thursday, 11 September 2014

KFSensor

http://www.keyfocus.net/kfsensor/download/kfdownload.php






D-Link DSL-3680 Port Redirect

Amun

http://diatel.wordpress.com/2010/05/05/amun-honeypots-installation/


HoneyBOT

http://www.atomicsoftwaresolutions.com/