What is Medpot

High-interaction SSH honeypot for logging SSH proxy with ongoing development.

Medpot: A Honeypot Emulating HL7 / FHIR Protocols

Medpot is a honeypot that simulates HL7 and FHIR protocols.

Installation Requires Go 1.17 or Newer

To install, you need Go version 1.17 or newer. You can install dependencies by running the bash script located at scripts/dependencies.sh. To execute the tool, use the command bash scripts/run_medpot.sh or alternatively, you can run it with go run go.go. If you want to compile it, use bash scripts/compile_medpot.sh or the command go build -o medpot go.go. You can create a copy on disk along with the necessary files by using make and make install, or you can set up a Docker container by running bash scripts/compile_docker.sh. By default, Medpot listens on port 2575 and allows you to configure settings such as the logo, port, and log location through command-line arguments.
 

Medpot Reviews

Write a Review

No reviews yet. Be the first to review this tool!

Write a Review

Share your experience with Medpot tool and help others make informed decisions.

Tracebit
Free

Tracebit View Tracebit

Tracebit redefines cloud intrusion detection by transforming security challenges into opportunities. Instead of complex rule sets that adversaries can evade, Tracebit deploys unique, anomaly-based decoys designed to be inherently difficult to bypass. This innovative approach generates highly actionable alerts, empowering security teams to detect and respond to threats more effectively while actively hindering adversary progress.

Anomaly-based decoy deployment
Actionable, high-fidelity alerts
Environment-specific decoy profiling
Snare
Free

Snare View Snare

Snare is a robust suite of event monitoring and analysis tools engineered to satisfy stringent auditing and security mandates. It excels at collecting, filtering, and analyzing IT event data, providing essential capabilities for real-time security monitoring, deep-dive analysis, comprehensive auditing, and secure archiving. By delivering actionable insights from your IT infrastructure's events, Snare empowers organizations to proactively identify and mitigate threats, ensure compliance, and maintain a secure operational posture.

Comprehensive IT event collection and filtering
Real-time security monitoring and threat detection
In-depth event analysis for forensic investigations
KFSensor
Free

KFSensor View KFSensor

KFSensor is an intelligent honeypot system engineered for robust intrusion and insider threat detection within Windows environments. It proactively lures and identifies malicious actors by emulating vulnerable system services and trojans, effectively acting as a decoy. Pre-configured to monitor all TCP, UDP, and ICMP traffic, KFSensor provides immediate post-installation network visibility and offers easy customization for simulating additional bespoke services.

Advanced honeypot for intrusion and insider threat detection
Simulates vulnerable services and trojans to attract attackers
Monitors all TCP, UDP, and ICMP ports
YALIH YALIH
Free

YALIH YALIH

A simple honeypot that collects credentials across various protocols

xxeserv
Free

xxeserv

Uploader honeypot designed to look like poor website security.

xss2png
Free

xss2png

Helix is a versatile honeypot designed to mimic the behavior of various protocols including Kubernetes API server, HTTP, TCP, and UDP.