t3chn0m4g3
faa5667246
bump adbhoney, cowrie, honeytrap to 20.06
2020-02-14 17:22:30 +00:00
t3chn0m4g3
f11ad6b523
tweaking
...
ELK 7.6.0 is not ready for production, however it works if APM is enabled (disabled in config, so image wont build as precaution)
Remove SISSDEN from ewsposter, suricata
Bump suricata to 5.0.1
Alpine now support suricata incl. enabled JA3 support, move back to Alpine install
2020-02-14 15:28:06 +00:00
Marco Ochse
b31225b97c
Merge pull request #524 from pisces-period/pisces-period-cowrie-patch
...
make Dockerfile compatible with any Python version
2020-02-03 17:17:25 +01:00
t3chn0m4g3
ad861200de
update mailoney
2020-02-03 14:46:43 +00:00
t3chn0m4g3
5ce5911ec1
cleanup
2020-02-03 12:59:21 +00:00
t3chn0m4g3
b9da9f04af
adjust default field
2020-02-03 12:18:43 +00:00
t3chn0m4g3
984ba958fb
logstash template not upgraded
...
with daily index enabled logstash will not be able to put new events into ES
simple solution, just deleting logstash template upon logstash start and leave it to logstash to upload the latest template
.
2020-02-01 14:08:23 +00:00
t3chn0m4g3
64729f5064
remove ilm support, breaks existing index at upgrade
2020-01-31 15:50:34 +00:00
t3chn0m4g3
5a4724bcba
elk 7.x dev test
2020-01-31 14:21:55 +00:00
t3chn0m4g3
64907a2eba
random loop timer ewsposter
2020-01-30 11:07:28 +00:00
t3chn0m4g3
fa0fdbb579
prepare for ELK migration to 7.x
2020-01-29 14:21:40 +00:00
t3chn0m4g3
33222a92b6
finish heimdall integration
2020-01-27 17:03:44 +00:00
t3chn0m4g3
62b519999e
tweaking
2020-01-24 15:38:00 +00:00
t3chn0m4g3
8b19228d99
tweaking heimdall, read only for now
2020-01-24 15:16:25 +00:00
t3chn0m4g3
2d16a9c9f6
tweaking new landing page
2020-01-24 14:14:09 +00:00
t3chn0m4g3
95a075e764
start working on new landing page
2020-01-24 02:21:33 +00:00
pisces-period
dc75b5567a
make Dockerfile compatible with any Python version
...
adding a temporary variable to store the current (updated) version of Python, thus fixing the situation where the version is != 3.7 (e.g. Alpine python package at version 3.8.1-r1), causing lines 39-41 to break in the original code (install path is hard-coded at 3.7).
2020-01-23 17:42:48 +01:00
t3chn0m4g3
f110eb08b0
prepare for mailoney json logging
2020-01-22 12:17:30 +00:00
t3chn0m4g3
1d0aad3b34
tweak logstash.conf for citrixhoneypot
2020-01-16 18:04:29 +00:00
t3chn0m4g3
a6ed6613a5
prepare citrixhoneypot for ELK integration
2020-01-16 15:13:58 +00:00
t3chn0m4g3
a953542f8f
rebase citrixhoneypot
2020-01-16 10:29:58 +00:00
t3chn0m4g3
be3e998a92
prepare citrixhoneypot for JSON logging
2020-01-15 13:59:11 +00:00
t3chn0m4g3
8a844e6dd3
prepare for CitrixHoneypot
2020-01-15 12:14:23 +00:00
t3chn0m4g3
755cbb77db
prepare for citrixhoneypot
2020-01-15 10:37:48 +00:00
t3chn0m4g3
2ed0f939d1
rebuild, tweak spiderfoot
2020-01-03 17:04:18 +00:00
t3chn0m4g3
af3ef271d4
rebuild cyberchef
2020-01-03 16:25:33 +00:00
t3chn0m4g3
3713139fc6
rebuild snare, tanner
2020-01-03 14:06:29 +00:00
t3chn0m4g3
0928e37326
rebuild Dionaea, Heralding
2020-01-02 17:37:08 +00:00
t3chn0m4g3
7c5fc000c0
rebuild fatt
2019-12-27 20:52:23 +00:00
t3chn0m4g3
64628c1293
rebuild rdpy
2019-12-27 20:09:15 +00:00
t3chn0m4g3
29d223865f
tweaking, rebuild honeypy
2019-12-27 19:58:22 +00:00
t3chn0m4g3
1442a257e5
conpot tweaking
2019-12-27 18:34:13 +00:00
t3chn0m4g3
a1d903db01
bump conpot to latest master
2019-12-27 16:21:12 +00:00
t3chn0m4g3
02bdc8194a
bump adbhoney to latest master with py3 support
2019-11-21 13:56:38 +00:00
t3chn0m4g3
78135df9e7
Bump Suricata to 5.0.0
2019-10-22 15:20:23 +00:00
t3chn0m4g3
3d85ca94f1
bump cowrie to v2.0.0
2019-10-21 20:59:36 +00:00
t3chn0m4g3
6921857573
bump heralding to latest master
2019-10-16 14:46:58 +00:00
t3chn0m4g3
42c19e4d81
bump glutton, tune down noisy log
2019-10-15 14:50:39 +00:00
t3chn0m4g3
b9fb3d4695
tune down noisy log
2019-10-15 07:49:30 +00:00
t3chn0m4g3
487ce4bed5
bump ewsposter to latest master
2019-09-21 12:09:17 +00:00
t3chn0m4g3
24ac6d203f
bump medpot to latest master
2019-08-28 14:52:25 +00:00
t3chn0m4g3
08ff1377fd
prep mailoney rebuild
2019-08-28 14:41:35 +00:00
t3chn0m4g3
42c57636b9
prep honeytrap rebuild
2019-08-28 14:34:20 +00:00
t3chn0m4g3
c86d6f15af
prep rebuild for elasticpot
2019-08-28 14:12:52 +00:00
t3chn0m4g3
670dddfea0
bump nginx to 1.16.1
2019-08-28 14:09:16 +00:00
t3chn0m4g3
2132f80988
prep rebuild for ciscoasa
2019-08-28 13:59:41 +00:00
t3chn0m4g3
cae95ebe20
bump adbhoney to latest master
2019-08-28 12:46:19 +00:00
t3chn0m4g3
66bb9443f9
bump elk stack to 6.8.2
2019-08-28 11:49:03 +00:00
t3chn0m4g3
bc6e94d329
spiderfoot, head bump to latest master
2019-08-16 17:29:41 +00:00
t3chn0m4g3
78d9d1f7c7
bump cyberchef to latest master
2019-08-16 17:14:58 +00:00
t3chn0m4g3
f1275e5b07
fix
2019-08-16 16:55:36 +00:00
Marco Ochse
4164b75bea
Fixed
...
DockerHub already uses 3.7
2019-08-16 17:59:05 +02:00
Marco Ochse
c2afdc0f1f
Fix for DockerHub
...
Works just fine on local build.
2019-08-16 17:46:17 +02:00
t3chn0m4g3
e0427cfc21
bump tanner to latest master
2019-08-16 14:43:10 +00:00
t3chn0m4g3
786ab5c082
adjust dionaea, fixes #435
2019-08-16 12:18:28 +00:00
t3chn0m4g3
bf39c0f5b2
bump elastic stack to 6.7.2
2019-08-15 15:38:12 +00:00
t3chn0m4g3
364831ae58
fix cd
2019-08-15 08:32:04 +00:00
t3chn0m4g3
31d7707d19
download instead of git pull
...
download translation maps rather than running a git pull
translation maps will now be bzip2 compressed to reduce traffic to a minimum
fixes #432
2019-08-14 14:43:47 +00:00
t3chn0m4g3
28f5491977
bump suricata to 4.1.4
2019-06-07 13:00:20 +00:00
t3chn0m4g3
5e22afd10b
finalize fatt support
2019-06-04 14:21:35 +00:00
t3chn0m4g3
8b03fb8f28
remove glastopf
2019-06-03 20:04:50 +00:00
t3chn0m4g3
bbf226aeda
remove glastopf
2019-06-03 19:57:50 +00:00
t3chn0m4g3
a7e553efe9
still working on fatt
2019-06-03 16:13:58 +00:00
t3chn0m4g3
f870c8e885
continue working on fatt
2019-06-03 10:22:07 +00:00
t3chn0m4g3
4e902b6560
add fatt to nextgen
2019-06-01 17:47:14 +00:00
t3chn0m4g3
d3239b78c4
start working on fatt
2019-05-31 17:52:39 +00:00
listbot
867bda6ad7
increase number of fields limit
...
#382
2019-05-31 15:34:29 +00:00
listbot
b658a01637
fixes #381
2019-05-26 09:47:20 +00:00
Marco Ochse
efdd2fc11d
optimize build
2019-05-25 19:35:03 +02:00
listbot
c09547e3a4
adjust group and permissions for /data
2019-05-08 11:16:48 +00:00
t3chn0m4g3
d4654f2bbc
prepare for hpfeeds opt in
2019-04-01 07:42:24 +00:00
t3chn0m4g3
c0d0e016e6
tweaking
...
Update Heralding to support SOCKS5
Correct Readme
Resize tped.sh
2019-03-27 13:39:23 +00:00
t3chn0m4g3
20711cb633
clean up
2019-03-26 16:30:14 +00:00
t3chn0m4g3
c7e9015a5a
Bump Suricata to 4.1.3
...
Build with Rust
Enable JA3
Enable more protocols
Improve payload logging
... and more.
2019-03-26 16:26:47 +00:00
t3chn0m4g3
349982baf7
update ewsposter
2019-03-20 14:43:21 +00:00
t3chn0m4g3
e8d8773863
tweaking
2019-03-19 11:08:23 +00:00
t3chn0m4g3
573ceb98a1
bump elk stack to 6.6.2, replace wget with aria2 to speed up d/l
2019-03-15 22:23:30 +00:00
t3chn0m4g3
5dae44b5e9
prepare for sissden opt-in
2019-03-15 15:59:02 +00:00
Marco Ochse
86715ccf7c
hpfeeds ca cert sissden
2019-03-15 13:38:19 +01:00
t3chn0m4g3
2b7d8ee01e
update ewsposter
2019-03-13 22:04:07 +00:00
t3chn0m4g3
0b92b56c55
store data as ascii, adjust config
2019-03-13 21:13:36 +00:00
t3chn0m4g3
6f30322ad5
prepare for honeypy
2019-03-10 18:15:59 +00:00
t3chn0m4g3
d9e5331a84
fix #313
2019-03-09 21:25:58 +00:00
t3chn0m4g3
bfa54853ab
add honeypy docker
2019-03-08 21:32:09 +00:00
t3chn0m4g3
869f05ca8b
cleanup
2019-03-01 21:08:36 +00:00
t3chn0m4g3
8d59602a75
tweaking
2019-03-01 13:57:21 +00:00
listbot
e1fe025dd7
remove fallback
2019-02-28 21:03:07 +00:00
listbot
6467a03d19
fix suricata ref location
2019-02-28 20:59:20 +00:00
listbot
65f242d322
cleanup
2019-02-28 15:01:12 +00:00
listbot
728607a2da
bump elk stack to 6.6.1
2019-02-28 14:52:42 +00:00
t3chn0m4g3
06ccf17c5f
add openssl
2019-02-26 13:25:06 +00:00
t3chn0m4g3
32043158bf
bump cowrie to 1.5.3
2019-02-26 13:07:07 +00:00
t3chn0m4g3
00f068980e
pin nginx to tls v1.3
2019-02-26 07:55:42 +00:00
t3chn0m4g3
9664d7b6c3
kibana pin to alpine 3.8
2019-02-25 15:49:26 +00:00
t3chn0m4g3
4e34e5c77d
cyberchef pin to alpine 3.8
2019-02-25 15:28:54 +00:00
t3chn0m4g3
28d6487ff5
rdpy fix dockerfile alpine 3.9
2019-02-25 15:12:48 +00:00
t3chn0m4g3
238fc05854
glastopf fix dockerfile alpine 3.9
2019-02-25 14:48:43 +00:00
t3chn0m4g3
fd150699f2
heralding fix dockerfile alpine 3.9
2019-02-25 13:55:46 +00:00
Marco Ochse
ec30cf89b9
Update Dockerfile
2019-02-06 17:11:08 +01:00
Marco Ochse
a0fcc62bf1
Fix names for Suricata daemons
2019-02-06 16:15:51 +01:00