honeypot-auditor
Does This Look Like An Honeypot? (DTLLAH) Multi-protocol CLI that fingerprints whether a target IP behaves like a low-interaction honeypot — Shodan Honeyscore, active auth/state probes, and a weighted score.
File Explorer
- action.yml
- golden.yml
- pages.yml
- publish-ghcr.yml
- publish-pypi.yml
- publish.yml
- security.yml
- test.yml
- CODEOWNERS
- docker-compose.benchmark.yml
- nginx-baseline.conf
- honeypot-auditor-cowrie-demo.cast
- honeypot-auditor-cowrie-demo.gif
- honeypot-auditor-dionaea-demo.cast
- honeypot-auditor-dionaea-demo.gif
- honeypot-auditor-lab-tour-demo.cast
- honeypot-auditor-lab-tour-demo.gif
- README.md
- .nojekyll
- agents.md
- CODE_REVIEW.md
- DECEPTION-AUDIT.md
- ELASTICSEARCH.md
- IMAP.md
- index.html
- llms-full.txt
- llms.txt
- MQTT.md
- PLUGINS.md
- PUBLISHING.md
- REDIS.md
- robots.txt
- SCORING.md
- SIGNATURES.md
- site.css
- sitemap.xml
- SNMP.md
- benchmark-lab.sh
- capture-tls-baseline.sh
- demo-cowrie.sh
- demo-dionaea.sh
- demo-lab-tour.sh
- demo-print-result.py
- demo-run-audit.sh
- polish-demo-cast.py
- record-demo.sh
- record-lab-tour-demo.sh
- sync-public-docs.sh
- __init__.py
- common.py
- ftp.py
- git.py
- http.py
- mongo.py
- mssql.py
- mysql.py
- nmap.py
- postgres.py
- rdp_vnc.py
- redis.py
- smb.py
- smtp.py
- ssh.py
- telnet.py
- __init__.py
- ftp.py
- http.py
- mssql.py
- mysql.py
- nmap.py
- rdp_vnc.py
- sip.py
- smb.py
- ssh.py
- telnet.py
- __init__.py
- core.py
- ports.py
- scoring.py
- __init__.py
- cdn_tls_profiles.json
- http2_settings_profiles.json
- tls_profiles.json
- __init__.py
- api.py
- intel.py
- __init__.py
- behavior.py
- coherence.py
- cotenancy.py
- fsm.py
- smb.py
- stack.py
- temporal.py
- __init__.py
- common.py
- core.py
- elasticsearch.py
- extended.py
- ftp.py
- git.py
- http.py
- httpproxy.py
- imap.py
- mongodb.py
- mqtt.py
- mssql.py
- mysql.py
- pop3.py
- postgres.py
- rdp.py
- recon.py
- redis.py
- shell_cti.py
- sip.py
- smb.py
- smtp.py
- snmp.py
- ssh.py
- telnet.py
- vnc.py
- __init__.py
- console.py
- json_export.py
- sarif.py
- ftp_desert.json
- http_header_order.json
- __init__.py
- evaluate.py
- loader.py
- __init__.py
- __main__.py
- analyzer.py
- banner.py
- capabilities.py
- cli.py
- engine.py
- hassh.py
- http2_fingerprint.py
- httpwire.py
- models.py
- netutil.py
- netutil_async.py
- proxy_detect.py
- proxy_transport.py
- redact.py
- settings.py
- smbutil.py
- sshutil.py
- tls_fingerprint.py
- transport.py
- cloudflare-proxied.raw
- nginx.raw
- python-trap.raw
- ftp_dionaea_banner.json
- http_nginx.json
- pop3_conformant.json
- ssh_kexinit_cowrie.json
- tls_server_hello.json
- invalid_banned.yaml
- valid_minimal.json
- __init__.py
- test_golden.py
- conftest.py
- conftest_replay.py
- test_analyzer.py
- test_banner.py
- test_capabilities.py
- test_check_sig.py
- test_cli.py
- test_config.py
- test_deep.py
- test_deep_modules.py
- test_elasticsearch.py
- test_engine.py
- test_ftp.py
- test_git.py
- test_hassh.py
- test_http.py
- test_http2_fingerprint.py
- test_httpproxy.py
- test_httpwire.py
- test_imap.py
- test_intel_plugins.py
- test_main.py
- test_models.py
- test_mongodb.py
- test_mqtt.py
- test_mssql.py
- test_mysql.py
- test_netutil.py
- test_packaging.py
- test_plan_gaps.py
- test_plugins.py
- test_pop3.py
- test_postgres.py
- test_probes_deep.py
- test_probes_package.py
- test_proxy_detect.py
- test_proxy_transport.py
- test_rdp.py
- test_recon.py
- test_redact.py
- test_redis.py
- test_replay.py
- test_reporters.py
- test_review_fixes.py
- test_sarif.py
- test_shell_cti.py
- test_signatures.py
- test_sip.py
- test_smb.py
- test_smb_config.py
- test_smb_deep.py
- test_smtp.py
- test_snmp.py
- test_ssh.py
- test_sshutil.py
- test_telnet.py
- test_tls_fingerprint.py
- test_transport.py
- test_vnc.py
- .gitignore
- .gitleaksignore
- CHANGELOG.md
- CONTRIBUTING.md
- CONTRIBUTORS.md
- Dockerfile
- honeypot-auditor.py
- LICENSE
- Makefile
- pyproject.toml
- README.md
- requirements.txt
- SECURITY.md
- uv.lock
# Use via CDN
jsDelivrjsDelivr serves any public GitHub repository as a CDN with zero setup. Pick a version and a file to get a ready-to-paste link and snippet.
Link
Example
// repository documentation
Was this content helpful?
(0 ratings)
