What is mhn-core-docker

A correlated injection proxy tool for XSS Hunter

It's a subset of the Modern Honey Network project

This is a subset of the Modern Honey Network project, which is designed to operate within a Docker environment.

The 'broker' Image Operates an HPFeeds Broker

The 'broker' image operates an hpfeeds broker.

The broker enables client interactions with channels

The broker enables clients to both publish content to channels and subscribe to channels.

The 'cowrie' image operates the cowrie honeypot

The 'cowrie' image operates the cowrie honeypot, which is a security mechanism designed to detect and analyze malicious activity.

It connects to the broker and publishes events

It establishes a connection to the broker and sends events to it for processing.

The 'dionaea' Image Operates the Dionaea Honeypot

The 'dionaea' image operates the dionaea honeypot, which is designed to capture and analyze malicious activity.

Connecting to the Broker and Event Publishing

It connects to the broker, publishes events to it, and stores the captured binaries. Within the broker container, there is an application named 'geoloc' that subscribes to the cowrie channel events and publishes a second channel with added geolocation information. Additionally, in the broker container, another application called 'honeymap' subscribes to the geoloc channel and generates a visually appealing map.

Listening on Port 3000: Steps to Set It Up

To begin, create a Docker network to assign static IP addresses to your containers: docker network create --subnet 192.168.0.0/24 honeynet. Next, clone the repository, navigate to the broker directory, and build the Docker image using the following commands: git clone https://github.com/MattCarothers/mhn-core-docker, cd broker, and docker build -t broker. Once the image is built, start the broker image. At this point, your host operating system will be listening on port 3000 for HTTP requests directed to honeymap. If you prefer...
 

mhn-core-docker Reviews

Write a Review

No reviews yet. Be the first to review this tool!

Write a Review

Share your experience with mhn-core-docker tool and help others make informed decisions.

Featured

Specops Software
Free

Specops Software View Specops Software

Specops Software empowers organizations to fortify their IT security by addressing the critical vulnerability of password management and authentication. As a premier vendor, Specops Software provides advanced solutions designed to proactively block weak passwords, enforce robust authentication protocols, and ensure compliance with stringent industry standards like CJIS and HITRUST. With deep native integration into Active Directory and on-premises data storage, Specops Software offers unparalleled security and control for sensitive business data.

Active Directory password policy auditing against compliance standards
Breached password detection for over 900 million known compromised passwords
Zero-trust access evaluation and enhancement
Infisical
Free

Infisical View Infisical

Infisical is the premier open-source platform designed for unified management of secrets, certificates, and configurations across your entire organization. It seamlessly integrates into your development workflows, CI/CD pipelines, and cloud infrastructure, ensuring secure storage and automated injection of sensitive information. Empower your team with robust features like versioning, point-in-time recovery, comprehensive audit logging, and automated secret rotation for enhanced security and operational efficiency.

Open-source secrets management platform
Unified management of secrets, certificates, and configs
Seamless integration with development workflows and CI/CD
Click Studios
Free

Click Studios View Click Studios

Click Studios is an Australian-based Agile software development company dedicated to evolving Passwordstate, their robust Enterprise Password Management solution. Continuously refined through customer insights and cybersecurity advancements, Passwordstate offers advanced features for secure sensitive information management and stringent compliance. Click Studios provides scalable, secure, and user-friendly password management solutions, empowering businesses globally with affordable and reliable access control.

Secure Enterprise Password Management
Continuous Feature Enhancement
Customer Feedback Driven Development

Similar Tools

Tracebit
Free

Tracebit View Tracebit

Tracebit redefines cloud intrusion detection by transforming security challenges into opportunities. Instead of complex rule sets that adversaries can evade, Tracebit deploys unique, anomaly-based decoys designed to be inherently difficult to bypass. This innovative approach generates highly actionable alerts, empowering security teams to detect and respond to threats more effectively while actively hindering adversary progress.

Anomaly-based decoy deployment
Actionable, high-fidelity alerts
Environment-specific decoy profiling
Snare
Free

Snare View Snare

Snare is a robust suite of event monitoring and analysis tools engineered to satisfy stringent auditing and security mandates. It excels at collecting, filtering, and analyzing IT event data, providing essential capabilities for real-time security monitoring, deep-dive analysis, comprehensive auditing, and secure archiving. By delivering actionable insights from your IT infrastructure's events, Snare empowers organizations to proactively identify and mitigate threats, ensure compliance, and maintain a secure operational posture.

Comprehensive IT event collection and filtering
Real-time security monitoring and threat detection
In-depth event analysis for forensic investigations
KFSensor
Free

KFSensor View KFSensor

KFSensor is an intelligent honeypot system engineered for robust intrusion and insider threat detection within Windows environments. It proactively lures and identifies malicious actors by emulating vulnerable system services and trojans, effectively acting as a decoy. Pre-configured to monitor all TCP, UDP, and ICMP traffic, KFSensor provides immediate post-installation network visibility and offers easy customization for simulating additional bespoke services.

Advanced honeypot for intrusion and insider threat detection
Simulates vulnerable services and trojans to attract attackers
Monitors all TCP, UDP, and ICMP ports
xxeserv
Free

xxeserv View xxeserv

Uploader honeypot designed to look like poor website security.

YALIH YALIH
Free

YALIH YALIH View YALIH YALIH

A simple honeypot that collects credentials across various protocols

xss2png
Free

xss2png View xss2png

Helix is a versatile honeypot designed to mimic the behavior of various protocols including Kubernetes API server, HTTP, TCP, and UDP.