The #honeypot saga continues. I left ssheshame overnight (mainly to test my understanding of nohup command) which resulted in a sizable 115 MB log.
The most intresting thing is that a lot of attempts was made to issue SMTP commands to email docomo.ne.jp adresses. Doccomo was breached earlier this year, which might explain this activity.
I find this specific phishing campaign towards japaneese citizens quite fascinating and slightly worrysome.
From the ADMIN Update newsletter: Matthias Wübbeling examines the OpenCanary honeypot for detecting attacks https://www.admin-magazine.com/Archive/2023/75/OpenCanary-attack-detection #security #honeypot #OpenCanary #network #Docker
#security #honeypot #opencanary #network #docker
Ever wonder what happends when you let someone into your SSH server?
📬 Hitman Marketplace: Frau wegen Auftragsmord vor Gericht
#OnlineBetrug #Rechtssachen #Szene #Bitpanda #darknet #HitmanMarketplace #Honeypot #LandgerichtChemnitz #Project21 #Rechtshilfeersuchen https://tarnkappe.info/artikel/rechtssachen/hitman-marketplace-frau-wegen-auftragsmord-vor-gericht-280063.html
#OnlineBetrug #Rechtssachen #szene #bitpanda #darknet #hitmanmarketplace #honeypot #landgerichtchemnitz #project21 #Rechtshilfeersuchen
@5am also @signalapp is inherently #centralized and like all #SingleVendor / #SingleProvider solutions can't be trusted!
I just don't have any evidence yet that they're an #ANØM-Style #Honeypot but I'd declare every LEA "criminally incompetent" if they didn't already #EncroChat themselves inside and put every phone # of every user on a watchlist.
Or does anyone think the CIA & NSA didn't find a successor operation to #MINERVA?
#Signal is signalling all the wrong vibes to me!
#Signal #minerva #EncroChat #honeypot #anom #SingleProvider #singlevendor #centralized
📬 Rückkehr der Imperial Library of Trantor hinterlässt viele Fragezeichen
#EBooks #Szene #Warez #Honeypot #ImperialLibraryofTrantor #IsaacAsimov #LasZenow #Schattenbibliothek #trantoris https://tarnkappe.info/artikel/e-books/rueckkehr-der-imperial-library-of-trantor-hinterlaesst-viele-fragezeichen-279800.html
#ebooks #szene #warez #honeypot #ImperialLibraryofTrantor #isaacasimov #LasZenow #Schattenbibliothek #trantoris
All shit that #monoclesChat or any other #XMPP+#OMEMO or #PGP/MIME - compatible client just doesn't do.
@signalapp in my eyes is at best begging to be infiltrated like #EncroChat if not outright a #HoneyPot like #ANØM!
DON'T USE IT!
DON'T ADVOCATE FOR IT!
TELL OTHERS TO DO THE SAME!
https://mstdn.social/@kkarhan/110864976153746039
#anom #honeypot #EncroChat #pgp #omemo #XMPP #monocleschat
TechcrunchSecurity: Researchers watched 100 hours of hackers hacking honeypot computers https://techcrunch.com/2023/08/09/researchers-watched-100-hours-of-hackers-hacking-honeypot-computers/ #cybersecurity #BlackHat2023 #cybercrime #Security #honeypot #hackers #hacking
#cybersecurity #blackhat2023 #cybercrime #security #honeypot #hackers #hacking
A Clever #Honeypot Tricked #Hackers Into Revealing Their Secrets
#Security researchers set up a remote machine and recorded every move #cybercriminals made—including their login details.
#cybercriminals #security #hackers #honeypot
TechcrunchSecurity: Researchers watched 100 hours of hackers hacking honeypot computers https://techcrunch.com/2023/08/09/researchers-watched-100-hours-of-hackers-hacking-honeypot-computers/ #cybersecurity #BlackHat2023 #cybercrime #Security #honeypot #hackers #hacking
#cybersecurity #blackhat2023 #cybercrime #security #honeypot #hackers #hacking
> "According to #Kolektiva, the seized database, now in the #FBI’s possession, includes personal information such as email addresses, hashed passwords, and IP addresses from 3 days prior to the date the backup was made. It also includes posts, #DMs, and interactions involving users on the server. As is the nature of the #fediverse, this also implicates messages and posts from *other* instances.
We had to block Kolektiva. They used #CloudFlare.
#Kolektiva #fbi #dms #fediverse #cloudflare #honeypot #usei2p #eff
SecurityOnline: HASH: framework for creating and launching low interactive honeypots https://securityonline.info/hash-framework-for-creating-and-launching-low-interactive-honeypots/ #HTTPAgnosticSoftwareHoneypot #Forensics #HoneyPot #Defense
#httpagnosticsoftwarehoneypot #forensics #honeypot #defense
@Seirdy @neurovagrant problem is that #Signal literally implements #Cyberfacism by restricting functionality based off claimed user location (phone number)...
The fact that they can do that alone is concerning.
Now add #CloudAct to it and you badically have a giant #HoneyPot.
All #Centralized #singlevendor / #SingleProvider solutions are inherently bad from #ITsec, #InfoSec, #OpSec & #ComSec factors alone!
#comsec #opsec #InfoSec #ITSec #SingleProvider #singlevendor #centralized #honeypot #cloudact #cyberfacism #Signal
SecurityOnline: SentryPeer v3.0.1 releases: distributed list of bad IP addresses and phone numbers https://securityonline.info/sentrypeer-sip-honeypot/ #SIPHoneypot #Forensics #HoneyPot
#siphoneypot #forensics #honeypot
@Anibyl @chris that's because it's a #SingleVendor / #SingleProvider #app and thus inherently insecure.
If your #OpSec, #InfoSec, #ComSec and #ITsec relies on "non-cooperative providers" you'll inevitably be susceptible to using #HoneyPot|s like #ANØM or be targeted by #Govware operations like the one happening with #EncroChat.
re!
#EncroChat #govware #anom #honeypot #ITSec #comsec #InfoSec #opsec #App #SingleProvider #singlevendor
@kvuzet Sorry, but people who are literally so stupid to trust #proprietary, #SingleVendor / #SingleProvider "solutions" like #EncroChat, #ANØM, #ProtonMail - or whatever #honeypot for that matter - should be jailed just "criminal stupidity" alone...
#honeypot #ProtonMail #anom #EncroChat #SingleProvider #singlevendor #proprietary
@talon Yeah, #ProtonMail is a #Snitch at best if not yet another #Honeypot in the Style of #ANØM or rather #CryptoAG...
I mean they literally got caught #snitching on teens planning #truancy - which AFAIK is just a misdemeanour.
https://www.youtube.com/watch?v=QCx_G_R0UmQ
#Truancy #snitching #CryptoAG #anom #honeypot #snitch #ProtonMail