t3chn0m4g3
134f2934e9
remove dns udp expose for qhoneypots (mini edition)
2025-02-12 16:00:46 +01:00
t3chn0m4g3
95626fb2cc
Disable DNS UDP Logging in Suricata, tweaking
2025-02-12 15:21:49 +01:00
t3chn0m4g3
6cda0fefe5
Remove exa / eza and it aliases
...
- fixes #1752
2025-02-03 11:54:03 +01:00
Marco Ochse
bd055f0037
Update Cowrie to latest master, fix typo
2025-01-21 12:25:21 +01:00
Marco Ochse
8162ce2571
Pin poetry==1.8.3
...
Multi-arch builds for log4pot are currently only working when pinning `poetry==1.8.3`.
As reported pipeline did not push images to registries (#1736 )
2025-01-15 16:23:06 +01:00
Marco Ochse
4917c42fbc
Fix Debian download link
2025-01-15 10:39:12 +01:00
t3chn0m4g3
e53c864138
install log4pot w/o dev group
2025-01-14 18:17:02 +01:00
t3chn0m4g3
896d719cfb
revert honeytrap to ubuntu 22.04
2025-01-10 19:58:17 +01:00
t3chn0m4g3
919031bd2a
Merge branch 'master' of https://github.com/telekom-security/tpotce
2025-01-09 19:42:04 +01:00
t3chn0m4g3
67d115fc21
update beelzebub (time, dest_port)
2025-01-09 19:41:45 +01:00
Marco Ochse
11328412ab
Merge pull request #1731 from dotdlew/patch-1
...
Update tpot.yml
2025-01-09 11:49:08 +01:00
Daniel H. Lewis
3334c5d0c7
Update tpot.yml
...
the original dnf config-manager command for fedora is incorrect and results in a syntax error. updated to working syntax
2025-01-08 15:27:02 -07:00
t3chn0m4g3
c45cda4f70
Fixes #1727
2025-01-06 17:54:17 +01:00
t3chn0m4g3
9fcc4cc1ad
Disable Scalable Vector Engine (XX:UseSVE=0) to fix issues on macOS and other ARM platforms
...
https://github.com/elastic/elasticsearch/issues/118583
2025-01-06 16:09:40 +01:00
t3chn0m4g3
b221a9d96e
Disable Scalable Vector Engine (XX:UseSVE=0) to fix issues on macOS and other ARM platforms
...
https://github.com/elastic/elasticsearch/issues/118583
2025-01-06 15:50:08 +01:00
t3chn0m4g3
653bb2ed1e
Disable Scalable Vector Engine (XX:UseSVE=0) to fix issues on macOS and other ARM platforms
...
https://github.com/elastic/elasticsearch/issues/118583
2025-01-06 13:20:54 +01:00
t3chn0m4g3
f6398f9cbb
fixes #1715
2024-12-16 13:30:08 +01:00
Marco Ochse
1231c54c36
Merge pull request #1712 from telekom-security/24.04.1
...
Release T-Pot 24.04.1
2024-12-11 16:42:57 +01:00
t3chn0m4g3
8465b4e608
update changelog
2024-12-11 16:41:11 +01:00
t3chn0m4g3
5b0a268e97
prep tags for release
2024-12-11 12:53:50 +01:00
t3chn0m4g3
a69dbbc4d2
point container registry to ghcr.io/telekom-security
2024-12-11 11:45:16 +01:00
t3chn0m4g3
4c4056c489
add 24.04 tag for removal
2024-12-10 17:50:29 +01:00
t3chn0m4g3
99aae57e59
correct rocky version
2024-12-10 16:00:00 +01:00
t3chn0m4g3
da151150e5
add more installation types
2024-12-10 15:50:42 +01:00
t3chn0m4g3
743dcdae95
Update ISO download links
2024-12-10 15:50:03 +01:00
t3chn0m4g3
e8dc0c9c3d
set vm.max_map_count, fixes #1618
2024-12-10 15:48:17 +01:00
t3chn0m4g3
1d3cc7cd4a
set .env to 24.04.1
2024-12-10 14:11:52 +01:00
t3chn0m4g3
d7c26b49ed
update elk objects
2024-12-10 14:05:00 +01:00
t3chn0m4g3
ca40bab5ee
update version tag to 24.04.1
2024-12-10 10:37:24 +01:00
t3chn0m4g3
663b509e90
go-pot:
...
- remove conflicting field ("type")
- ranme duration => session_duration
2024-12-09 19:44:15 +01:00
t3chn0m4g3
c710aa83f0
bump go-pot to latest release (v1.0.0)
2024-12-09 18:11:29 +01:00
t3chn0m4g3
fc388a9ef7
Support Dicom legacy port on tcp/104
2024-12-09 17:58:52 +01:00
t3chn0m4g3
e43e8277fc
tweaking nginx, ddospot:
...
- Remove ddospot from standard
- Add ddospot only to tarpit
- Decouple nginx from host mode, only export tcp/64297, tcp/64294
- Adjust editions accordingly
- Keep LUA settings in Nginx config for now, just in case we find a different use case
2024-12-09 17:38:25 +01:00
t3chn0m4g3
a67a765dd7
bump to node 20.15.1
2024-12-06 13:09:27 +01:00
t3chn0m4g3
9ce2204c4b
cleanup
2024-12-06 12:52:24 +01:00
t3chn0m4g3
35fd6da287
bump elastic stack to 8.16.1
2024-12-06 12:28:20 +01:00
t3chn0m4g3
ce6eef8dc0
update version tag
2024-12-06 11:07:34 +01:00
t3chn0m4g3
b2db048671
clarify dps.sh => dps
2024-12-06 11:04:08 +01:00
t3chn0m4g3
d416d2e56b
tweaking / improving:
...
- add glutton to builder
- reduce parallel builds to 2
- require root for tc
- add docker logins
2024-12-06 09:55:31 +01:00
t3chn0m4g3
59cc5c7d38
housekeeping
2024-12-05 22:39:01 +01:00
t3chn0m4g3
7f2667cea8
tweaking, cleanup
2024-12-05 21:12:18 +01:00
t3chn0m4g3
2b3a45c800
tweaking
2024-12-05 19:32:20 +01:00
t3chn0m4g3
c155c96945
tweaking
2024-12-05 18:14:27 +01:00
t3chn0m4g3
2c639a2dd8
Optimize image, pyinstaller
2024-12-05 18:13:16 +01:00
t3chn0m4g3
967ddf6d2f
tweaking:
...
- bump nginx to alpine 3.20
- bump cyberchef to latest release
- bump elasticvue to latest release
- update nginx config
2024-12-04 20:55:39 +01:00
t3chn0m4g3
b75e22cabc
bump to alpine:3.20 and optimize image using either from:scratch or pyinstaller
2024-12-04 20:52:30 +01:00
t3chn0m4g3
2747719f05
tweaking:
...
- bump suricata to 7.0.7, update config, remove broadcast, multicast, netbios, igmp and mdns using capture-filter.bpf
2024-12-04 20:50:06 +01:00
t3chn0m4g3
486c97335f
update mailoney for py <= 3.11
...
- working commands and mail log
- hostname obfuscation
- update server string
2024-12-03 19:26:18 +01:00
t3chn0m4g3
13f97a6c76
update for py3.12, ubuntu 24.04
2024-11-29 20:39:22 +01:00
t3chn0m4g3
b0eb74b0af
bump to latest master, optmize image
2024-11-29 17:58:07 +01:00