github r-smith/deceptifeed v0.44.0
0.44.0

latest releases: v0.68.0, v0.67.0, v0.66.0...
11 months ago

New Features

  • Built-in automatic log file rotation. Honeypot logs now rotate when the log file size exceeds a set threshold. On rotation, the log file is renamed with a .1 suffix. Only a single rotation per log file is kept. The threshold for rotation is currently set to 50 MB.
  • Add ability to view honeypot logs from the threat feed web interface.
  • Add a new TAXII collection, sightings, which represents the threat feed as STIX sightings.

Changes

  • Applied numerous visual changes to the threat feed web interface.
  • Changed default SSH honeypot banner to appear as OpenSSH 9.6.
  • Renamed the /html endpoint to /webfeed.

Fixes

  • The HTTP honeypot was logging the User-Agent in two places: event_details and headers. It was intended to only log to the event_details section. This has been corrected.

Full Changelog: v0.18.0...v0.44.0

Don't miss a new deceptifeed release

NewReleases is sending notifications on new releases.