Ghost USB Honeypot

Ghost USB Honeypot

#Threat Defense#Honeypots

A subset of the Modern Honey Network project set up to run in docker, including hpfeeds broker, cowrie honeypot, and dionaea honeypot.

Visit Website

Ghost: A Honeypot for Malware Spread via USB Storage Devices

Ghost serves as a honeypot specifically designed to capture malware that propagates through USB storage devices.

It identifies infections caused by such malware

It identifies infections caused by such malware without requiring any additional information.

It emulates a USB storage device to mislead malware

It simulates a USB storage device, deceiving malware into infecting the simulated device.

For detailed instructions on how to run the application

For comprehensive guidance on how to execute it, please refer to the wiki.

The project is supported by Rapid7's Magnificent7 program

The project receives support from Rapid7's Magnificent7 program.