Projects

This page contains a list of tools and services that we use on a regular basis. Most of these tools have been created by our members and GSoC students, but some are also external and not affiliated with the Honeynet Project. If you see that a specific tool is not listed, but should, feel free to email [email protected]. Projects are sorted by last commit date.

Active Projects

BuffaLogs

an Open Source Django App whose main purpose is to detect login anomalies

GitHub 45 Python

GreedyBear

Threat Intel Platform for T-POTs

GitHub 156 Python MIT
cyber-threat-intelligence cybersecurity hacktoberfest honeypot ioc open-source python threat-intelligence threatintel tpot

Intel Owl

IntelOwl: manage your Threat Intelligence at scale

Website GitHub 4201 Python AGPL-3.0
cyber-security cyber-threat-intelligence cybersecurity dfir enrichment hacktoberfest honeynet incident-response intel-owl ioc malware-analysis malware-analyzer osint osint-python python

T-Pot

The All In One Multi Honeypot Platform 🐝

GitHub 8045 C GPL-3.0
deception docker elk honeypot network-security security t-pot

thug

Python low-interaction honeyclient

GitHub 1015 Python GPL-2.0
client-honeypot honeyclient low-interaction python security-tools shellcode virustotal

mitmproxy

An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

Website GitHub 39.8k Python MIT
debugging http http2 man-in-the-middle mitmproxy proxy python security ssl tls websocket

DRAKVUF

Black-box Binary Analysis

introspection malware-analysis virtualization xen

Glutton

Generic Low Interaction Honeypot

GitHub 280 Go MIT
hacktoberfest honeypot

ochi

Website GitHub 32 Go GPL-3.0
honeypot visualization

PcapMonkey

will provide an easy way to analyze pcap using the latest version of Suricata and Zeek.

GitHub 155 Zeek

Conpot

ICS/SCADA honeypot

GitHub 1353 Python GPL-2.0
hacktoberfest honeypot ics python scada security

honeyscanner

A vulnerability analyzer for honeypots

Website GitHub 45 Python MIT
cybersecurity cybersecurity-assessments dos-attack exploitation fuzzing honeypots passive-vulnerability-scanner ssh-honeypot vulnerability-scanner

TANNER

He who flays the hide

GitHub 228 Python GPL-3.0
honeypot security

DroidBot

A lightweight test input generator for Android. Similar to Monkey, but with more intelligence and cool features!

GitHub 884 Python MIT

dionaea

Home of the dionaea honeypot

Website GitHub 754 Python GPL-2.0
dionaea honeypot security

Glastopf

Web Application Honeypot

Old Projects

SNARE

Super Next generation Advanced Reactive honEypot

Website GitHub 465 Python GPL-3.0
hacktoberfest honeypot security

WhisperPot

VoIP honeypot system

GitHub 20 Python MIT
honeypot voip

RIoTPot

the IoT and OT (Operational Technology) Honeypot

GitHub 25 Go MIT

Kippo

SSH Honeypot

GitHub 1694 Python

Droidbox

Dynamic analysis of Android apps

GitHub 782 Python

cuckoo

Sandbox is an automated dynamic malware analysis system

Website GitHub 5736 JavaScript

dockpot

GitHub 52 Python

Google Hack Honeypot

Google Hack Honeypot

GitHub 7 PHP GPL-2.0
honeypot security

Honeytrap

a low-interaction honeypot

GitHub 94 C GPL-2.0

GVol

GitHub 20 Java MIT

Capture-HPC

A high interaction client honeypot

Capture BAT

a behavioral analysis tool of applications for the Win32 operating system family.

GitHub 32 C++ GPL-2.0

honeysnap

GitHub 13 Python

honeyc

GitHub 8 Ruby

HFlow2

GitHub 5 C++ GPL-2.0

APKinspector

a powerful GUI tool for analysts to analyze the Android applications.

GitHub 844 Java

HoneyBow

A high-interaction malware collection toolkit

Honeyd

A low-interaction honeypot

Honeystick

A portable honeynet demonstration and incident response tool

Latest Activity

ManofWax pushed to certego/BuffaLogs · at July 8, 2025
1 commit to certego/BuffaLogs
f897975 Alert Preferences System (#322)
drosetti pushed to intelowlproject/IntelOwl · at July 7, 2025
513fb7d fixed unittest
Boolean-Autocrat opened a pull request in mushorg/glutton. · at July 7, 2025
1434 additions and 5 deletions in 16 changed files.
Lorygold pushed to certego/BuffaLogs · at July 6, 2025
1 commit to certego/BuffaLogs
744fde7 Generalized utilities functions
pranjalg1331 pushed to intelowlproject/IntelOwl · at July 5, 2025
06909cf ja4db
t3chn0m4g3 pushed to telekom-security/tpotce · at July 5, 2025
ffc464b feat: flags in install.sh for silent installation (#1766)
julie-nga opened a pull request in tklengyel/drakvuf. · at July 4, 2025
buffer pushed to buffer/thug · at June 29, 2025
2 commits to buffer/thug
0f1e44a Update requirements: Bump lxml from 5.4.0 to 6.0.0 fe7d090 Merge pull request #414 from buffer/dependabot/pip/lxml-6.0.0
namay26 opened a pull request in mushorg/glutton. · at June 26, 2025
125 additions and 3 deletions in 4 changed files.
tklengyel pushed to tklengyel/drakvuf · at June 12, 2025
1 commit to tklengyel/drakvuf
da7dbcd Support for Windows Vista: skip ObTypeIndexTable and ObpInfoMaskToOffset for …
buffer pushed to buffer/thug · at June 9, 2025
2 commits to buffer/thug
969a80a Update requirements: Bump requests from 2.32.3 to 2.32.4 88a7531 Merge pull request #411 from buffer/dependabot/pip/requests-2.32.4