t3chn0m4g3
b214db6e9d
bump cowrie to 2.3.0, ewsposter to 1.21
2021-11-05 17:43:47 +00:00
t3chn0m4g3
c9b909e51d
finetune new honeypots logging
2021-11-02 19:13:28 +00:00
t3chn0m4g3
db74c610ad
bump hellpot to 0.3 and train config for CVE-2021-39341
2021-11-01 13:36:44 +00:00
t3chn0m4g3
ea624351b5
finetuning logstash.conf for new honeypots
2021-10-29 16:28:16 +00:00
t3chn0m4g3
c1eb9f7216
logstash parsing for ddospot, hellpot
2021-10-28 18:57:55 +00:00
t3chn0m4g3
1a844d13ba
start integrating new honeypots into ELK
2021-10-27 16:14:52 +00:00
t3chn0m4g3
348a5d572b
bump elastic stack to 7.15.1
2021-10-26 13:56:38 +00:00
t3chn0m4g3
77dcd771df
move debian to ubuntu 20.04
2021-10-05 15:26:02 +00:00
t3chn0m4g3
b566b39688
move honeytrap to ubuntu 20.04
...
thanks to @adepasquale's work
2021-10-04 20:19:40 +00:00
t3chn0m4g3
dd7fb325b6
add new honeypots to nextgen to prep for ELK setup
...
honeytrap testing
2021-10-01 16:18:10 +00:00
t3chn0m4g3
ab092faa2c
prep conpot rebuild
2021-10-01 15:10:37 +00:00
t3chn0m4g3
28681ef398
prep heralding rebuild
2021-10-01 14:32:24 +00:00
t3chn0m4g3
eefd38a335
bump elastic stack to 7.15.0
...
no image upgrade before 7.15.1
2021-09-30 20:40:42 +00:00
t3chn0m4g3
261b380db7
cleaup fatt, bump suricata to 6.0.3
2021-09-30 19:39:59 +00:00
t3chn0m4g3
77e2dd2da6
cleanup spiderfoot, prep fatt rebuild
2021-09-30 19:14:11 +00:00
t3chn0m4g3
183136c1f1
bump spiderfoot to v3.4
2021-09-30 17:03:28 +00:00
t3chn0m4g3
1fe0247095
prep p0f, medpot for image rebuild
2021-09-30 15:58:10 +00:00
t3chn0m4g3
adab02a067
prep for updated nginx image
2021-09-28 19:51:08 +00:00
t3chn0m4g3
58aa3162cb
prep for ewsposter fix
2021-09-28 15:58:15 +00:00
t3chn0m4g3
405ee521a6
prep ubuntu rebuild for honeytrap
2021-09-24 17:09:55 +00:00
t3chn0m4g3
9a3465aef1
bump cowrie to latest master, prep for rebuild
2021-09-24 17:03:55 +00:00
t3chn0m4g3
e23c57e58d
some tests with dionaea
2021-09-24 16:10:14 +00:00
t3chn0m4g3
44749fe9e7
bump honeysap to alpine3.11
2021-09-24 15:47:05 +00:00
t3chn0m4g3
f5d11bb008
bump snare, tanner, prep for rebuild
2021-09-24 15:18:59 +00:00
t3chn0m4g3
efa9d991ba
revert honeypy to alpine
2021-09-23 22:28:33 +00:00
t3chn0m4g3
a7faafeba9
test mailoney
2021-09-23 21:50:37 +00:00
t3chn0m4g3
f05abc07c9
cleanup
2021-09-23 21:20:25 +00:00
t3chn0m4g3
eeae863820
revert to alpine
2021-09-23 21:11:24 +00:00
t3chn0m4g3
9f9d1a65bd
debian test
2021-09-23 20:53:38 +00:00
t3chn0m4g3
a48840d1b2
prep rdpy for debian rebuild
2021-09-23 20:15:33 +00:00
t3chn0m4g3
48de3d846c
fix typo in crontab
2021-09-23 10:00:20 +00:00
t3chn0m4g3
122135dd80
prepare rebuilding dicompot
2021-09-20 21:57:39 +00:00
t3chn0m4g3
8576e576a6
prep mailoney for rebuild
2021-09-20 20:20:04 +00:00
t3chn0m4g3
32e1e8a8ea
prep for rebuilding ciscoasa, elasticpot, honeypy
2021-09-20 16:08:16 +00:00
t3chn0m4g3
ed224215a4
tweak cyberchef image for better security, prep citrixhoneypot for rebuild
2021-09-20 14:29:42 +00:00
t3chn0m4g3
e9c03e512c
prep rebuild for adbhoney, cyberchef
2021-09-20 09:15:28 +00:00
t3chn0m4g3
ed0c5aa89f
add logstash-output-gelf, fixes #861
2021-09-15 17:39:04 +00:00
t3chn0m4g3
9de1bdd0b5
tweaking, bump elastic stack to 7.14.1, rebuild dashboards
2021-09-15 15:58:44 +00:00
t3chn0m4g3
06ef8850fe
prep for ELK 7.13.4, start full integration of new honeypots
2021-08-25 15:04:27 +00:00
t3chn0m4g3
2aa4c3c2c6
disable ntp server on host, start working on ddospot
2021-07-09 23:16:19 +00:00
t3chn0m4g3
0867d8f011
prep for redishoneypot
2021-07-05 19:59:44 +00:00
t3chn0m4g3
a2071eb4d2
hellpot cleanup and prep for endlessh
2021-07-03 15:51:32 +00:00
t3chn0m4g3
e6402b793c
start including hellpot
2021-07-02 22:12:47 +00:00
t3chn0m4g3
4cb84166c5
bump ewsposter to 1.2.0, elk stack to 7.13.2
2021-06-28 16:30:40 +00:00
t3chn0m4g3
b6be931641
prep for new ewsposter, rollout to follow next week
2021-06-24 16:26:53 +00:00
t3chn0m4g3
f51ab7ec0f
prepare to bump elastic stack to 7.13.1
2021-06-10 17:03:22 +00:00
t3chn0m4g3
de38e5e86f
Rebuild Logstash, Elasticsearch
...
Setting static limits for Elasticsearch / Logstash on Xms, Xmx and Container RAM results in unwanted side effects for some installations. With Elastic supporting dynamic heap management for Java 14+ we now use OpenJDK 16 JRE and as such remove limitations. This should improve stability for T-Pot, provided the minimum requirements will be met.
2021-05-26 11:00:49 +00:00
t3chn0m4g3
0c5ab33b8a
bump elastic stack to 7.12.1
2021-05-17 16:32:03 +00:00
trixam
60e57bce52
Update update.sh
...
Adding quotation marks for $URL
2021-05-03 14:40:08 +02:00
trixam
dceaa984c9
Update update.sh
...
Download rules via URL
2021-04-21 12:44:36 +02:00
t3chn0m4g3
532907c27c
rebuild honeytrap
2021-02-25 11:57:16 +00:00
t3chn0m4g3
fb860fb861
fix protocols for conpot testing
2021-02-25 11:55:51 +00:00
t3chn0m4g3
7d423f29da
rebuild snare, tanner, redis, phpox
2021-02-19 13:02:08 +00:00
t3chn0m4g3
d5f0ceb15b
push elastic stack to 7.11.1
2021-02-19 10:17:30 +00:00
t3chn0m4g3
5f38e730d4
rebuild conpot for latest alpine edge, bump to latest master
2021-02-18 17:39:52 +00:00
t3chn0m4g3
c48ad0863d
bump ewsposter to latest master
2021-02-18 16:52:43 +00:00
t3chn0m4g3
4bc2b1bf03
rebuild cowrie for alpine 3.13
2021-02-18 16:38:35 +00:00
t3chn0m4g3
3d123f35a4
rebuild glutton for alpine 3.13, update to latest master
2021-02-18 11:12:21 +00:00
t3chn0m4g3
d4519892f6
rebuild dionaea
2021-02-18 10:37:17 +00:00
t3chn0m4g3
69c535619d
bump heralding to 1.0.7 and rebuild for alpine 1.13
2021-02-16 16:59:17 +00:00
t3chn0m4g3
5fe59c3bd8
rebuild ipphoney for alpine 3.13
2021-02-16 16:14:37 +00:00
t3chn0m4g3
d8d0a6f190
rebuild fatt for alpine 3.13
2021-02-16 13:27:56 +00:00
t3chn0m4g3
4d407b420d
rebuild ewsposter for alpine 3.13
2021-02-16 13:15:26 +00:00
t3chn0m4g3
181e3585b7
bump spiderfoot to 3.3 and rebuild for alpine 3.13
2021-02-16 11:01:43 +00:00
t3chn0m4g3
2597af73ee
rebuild dicompot for alpine 3.13
2021-02-15 12:34:11 +00:00
t3chn0m4g3
0ab220ebf0
rebuild p0f for alpine 3.13
2021-02-15 12:12:24 +00:00
t3chn0m4g3
2777fc1f41
rebuild medpot for alpine 3.13
2021-02-15 12:09:19 +00:00
t3chn0m4g3
91483a231d
rebuild honeysap
2021-02-15 11:46:55 +00:00
t3chn0m4g3
95ea079f4d
rebuild heimdall, nginx for php7.4, alpine 3.13
2021-02-15 11:00:00 +00:00
t3chn0m4g3
8112f48270
rebuild elasticpot for alpine 3.13
2021-02-15 10:14:52 +00:00
t3chn0m4g3
898f8be4db
rebuild citrixhoneypot for alpine 3.13
2021-02-15 10:05:29 +00:00
t3chn0m4g3
a28ee97f13
rebuild ciscoasa for alpine 3.13
2021-02-15 10:01:03 +00:00
t3chn0m4g3
f2c48d7efc
bump cyberchef to latest release
2021-02-12 17:09:44 +00:00
t3chn0m4g3
039f3c115a
update adbhoney image
2021-02-12 14:21:31 +00:00
t3chn0m4g3
80d9efa729
bump elk stack images to alpine 3.13
2021-02-12 13:54:42 +00:00
t3chn0m4g3
e5f29f3c90
bump elk stack to 7.11.0
2021-02-12 13:21:35 +00:00
t3chn0m4g3
ee3d667615
bump dionaea to 0.11.0
2021-01-19 10:59:32 +00:00
t3chn0m4g3
d2dc43e1ef
Update internet IF retrieval
...
To be consistent with @adepasquale PR #746 fatt, glutton and p0f Dockerfiles were updated accordingly.
2021-01-06 17:05:09 +00:00
Andrea De Pasquale
b3b983afe6
Change method to get default Suricata interface
...
On some systems, interface number 2 is not always the correct one.
With AWK we now collect the first active interface having both an
address and a broadcast.
2021-01-06 11:14:24 +01:00
t3chn0m4g3
e1745bdea1
fix broken sqlite db
2020-12-28 21:49:28 +00:00
t3chn0m4g3
af6ce8854d
bump elastic stack to 7.10.1
2020-12-10 15:20:18 +00:00
t3chn0m4g3
6069b214a5
bump ewsposter to 1.12
2020-12-10 11:40:53 +00:00
t3chn0m4g3
f3f9f6ae72
cleanup
2020-12-03 00:01:38 +00:00
t3chn0m4g3
bdf095367d
prep for ewsposter 1.11
2020-12-02 23:21:23 +00:00
t3chn0m4g3
8a7e81815e
prep for Elastic Stack 7.10.0
2020-12-02 22:36:17 +00:00
Andrea De Pasquale
87a27e4f2b
Suricata: use suricata-update for rule management
...
As a bonus we can now run "suricata-update" using docker-exec,
triggering both a rule update and a Suricata rule reload.
2020-11-30 17:56:14 +01:00
Marco Ochse
2ecef8c607
enable MQTT
...
as eagle eyed by @adepasquale
2020-11-27 19:07:12 +01:00
Andrea De Pasquale
73a5847753
Suricata: update suricata.yaml config to 6.0.x
...
Merge in the latest updates from suricata-6.0.x while at the same time
keeping the custom T-Pot configuration.
https://github.com/OISF/suricata/blob/suricata-6.0.0/suricata.yaml.in
2020-11-26 19:16:01 +01:00
Marco Ochse
c976aea73e
Merge pull request #725 from adepasquale/suricata-yaml-5.x
...
Suricata: update suricata.yaml config to 5.x
2020-11-26 16:23:50 +01:00
t3chn0m4g3
4ada38988c
bump cowrie to 2.2.0
2020-11-26 08:17:09 +00:00
Andrea De Pasquale
0010f99662
Suricata: disable eve.stats since it's unused
...
Prevent the error below by disabling stats globally and in eve-log:
<Error> - [ERRCODE: SC_ERR_STATS_LOG_GENERIC(278)] - eve.stats: stats are disabled globally: set stats.enabled to true.
2020-11-25 17:07:49 +01:00
Andrea De Pasquale
e2f76c44cb
Suricata: update suricata.yaml config to 5.x
...
Merge in the latest updates from suricata-5.x while at the same time
keeping the custom T-Pot configuration.
https://github.com/OISF/suricata/blob/master-5.0.x/suricata.yaml.in
2020-11-25 15:51:41 +01:00
t3chn0m4g3
e26853c7fa
bump suricata to 5.0.4
2020-10-28 17:53:23 +00:00
t3chn0m4g3
d64cbe6741
bump ipphoney to latest master
2020-10-28 17:34:28 +00:00
t3chn0m4g3
c3809b5a98
bump heralding to latest master
2020-10-28 17:27:09 +00:00
t3chn0m4g3
a3d40cc57c
bump spiderfoot to 3.2.1
2020-10-28 17:08:55 +00:00
t3chn0m4g3
e3fda4d464
bump dionaea to 0.9.2
2020-10-28 16:45:53 +00:00
t3chn0m4g3
4bf245d13b
bump conpot to latest master
2020-10-28 13:56:52 +00:00
t3chn0m4g3
92925cecbd
bump dicompot to latest master
2020-10-27 21:30:33 +00:00
t3chn0m4g3
f204cdf9b8
bump elk to 7.3
2020-10-27 19:43:32 +00:00