How to Create a small Honeypot - Projeto TI
Headlines News :

.

Home » » How to Create a small Honeypot

How to Create a small Honeypot

Written By x86_g on 2013-04-19 | 7:14 AM


Author:lev_rusia
HoneyPots
How to create a small honeypot:-
It will take less than 5 minutes to make a HoneyPot with desired port number
Firstly You need to download pentbox
To download type this in the new kernel:-
[Image: c9mzOAi.png]
[Image: dekW8TW.png]
Now Run the PentBox
[Image: ABSPEU0.png]
[Image: Tzu7FVq.png]
PentBox:-
[Image: IrEHpPF.png]
NETWORK TOOLS
To select network tools you have to enter number : 2
See the below image for more details -
[Image: PhNPI4N.png]
HONEYPOT
After pressing enter key network tools options will display , now you have to select the Honeypot options .
To select honey , enter number 3 and press enter key
.
See the below image for more details -
[Image: sKoasox.png]
Honeypot Setting
Now select the 2nd option ( Manual Configuration ).
Enter number : 2 and press enter key
[Image: sKoasox.png]
Insert Port Number
Insert the port number , here in my case i have enter port 23 .
See the below image for more details -
[Image: vpZt6Z9.png]
Insert false message
Now insert the false Message , i have entered ( Show in the below image ) .
You can type any message . Which is display on the attacker machine when they try to connect port 23 .
See the below image for more detials -
[Image: gTW45DJ.png]
Save a log
To save all the intrusions in a log file , you have to enter y(yes) option .
[Image: f76aMJi.png]
Next , it will display the default path of log file , this option will activated if you don’t give any manual path .
Activate Beep sound
If you activated Beep sound , then whenwver a intrusion takes place a beep sound will alert you .
To activate beep sound , insert y (yes) and press enter key .
-
See the below image for more details
[Image: 0hlBZLU.png]
Your HoneyPot is Ready..
Now In case a hacker tries to enter your syster (i.e. backtrack), instrusions will be detected
Eg: Below on the Backtrack 5 machine , some intrusion detected from 192.168.232.129.
[Image: AoXjev9.png]
Now let see the log file-
[Image: 7ndr1RR.png]
Share this article :

0 comentários:

Postar um comentário