TekTip - Ep11 - Kippo SSH Honeypot

Sep 14 2012

Announcing HoneyDrive!

UPDATE: This post was about the server version of HoneyDrive which is no longer maintained. I have now released a HoneyDrive Desktop version based on Xubuntu Linux. HoneyDrive is a virtual hard disk drive (VMDK format) with Ubuntu Server 11.10 32-bit edition installed. It contains various honeypot systems such as Kippo SSH honeypot, Dionaea malware …

Jun 02 2012

Honeyd-Viz 0.2 released!

This is the latest release of Honeyd-Viz (0.2), refactoring some old code and adding 3 new charts (most connections per day - top 20, connections per day, connections per week). You can get it from here: honeyd-viz-0.2 MD5 Checksum: 200F4C7E7C7FFD053BBEF97213A94C80 SHA-1 Checksum: 67FFA5892C175DCBAACFC2828473A4B3DBFF0EF5 CHANGES: Version 0.2: + Cleaned honeyd-viz-generator.php. + Added most connections per day …

May 09 2012

Honeyd2MySQL 0.3 - fixed DB schema

Another release for Honeyd2MySQL script, now with a more proper database schema. Download it from here: honeyd2mysql-0.3 MD5 Checksum: 4856122B53264D9077A005864095C0DF SHA-1 Checksum: CBB0ABD48B430AF521B43E8F6E1BD453EBD8F86E For comments, suggestions, fixes, please use the Honeyd2MySQL page:

May 03 2012

Honeyd-Viz 0.1 released!

I am happy to announce the release of a new honeypot visualization script: Honeyd-Viz. It is a web interface written in PHP used in conjunction with Honeyd2MySQL script. It uses “Libchart” PHP chart drawing library by Jean-Marc Trémeaux, “QGoogleVisualizationAPI” PHP Wrapper for Google’s Visualization API by Thomas Schäfer and geoPlugin geolocation technology ( An example …

May 03 2012

New version of Kippo-Graph: 0.7.2 (small fixes)

This is the release of a new version of Kippo-Graph, fixing various small issues around the interface. You can get it from here: kippo-graph-0.7.2 MD5 Checksum: DAF8AF0A3FCF19239FD43598CA32FF26 SHA-1 Checksum: B1C6767912EA9629D51C8C0CD133E170411681C8 CHANGES: Version 0.7.2: + Minor fixes and various changes. For comments, suggestions, fixes, please use the Kippo-Graph page:

May 02 2012

Honeyd2MySQL v0.2 - important fix

A small but important fix for Honeyd2MySQL script: honeyd logs both the start (S) and ending (E) of connections to specific ports. The initial version was copying every event from the logfile to the database, while we only need the (S) lines. Please donwload the new version from here: honeyd2mysql-0.2 MD5 Checksum: 13AA3BF59777515B6A5A5E454A09C9D2 SHA-1 Checksum: …

