Let's Catch Some Hackers - Deploying a Honeypot! #1

Поділитися
Вставка

КОМЕНТАРІ • 24

  • @azizihack6593
    @azizihack6593 Рік тому +2

    is your ubuntu host running from a cloud provider?

  • @brycecoonce2427
    @brycecoonce2427 3 роки тому +2

    Can you please create a video on how to setup Alerts for T-Pot? I want to use this device internally and it would be nice to get email alerts. Thanks!
    Great Video BTW.

    • @taylorwalton_socfortress
      @taylorwalton_socfortress  3 роки тому +3

      Hey, this video details how we can generate alerts received from our honeypot: ua-cam.com/video/S1t_c6KXwEY/v-deo.html

  • @JoseAntonio-qu4my
    @JoseAntonio-qu4my Рік тому

    You're actually using a VM with ubuntu right? dumb question but I don't know, newbie here.

  • @HitmanThunder
    @HitmanThunder 2 роки тому

    Hey, I was hoping to attach a TLS certificate with a domain name to the honeypot as a school project. Do you know which ports I should use for the AWS load balancer in order to do so since the ports are remapped so I can make the connection encrypted when accessing the browser through port 64297?

    • @royalpotato4733
      @royalpotato4733 Рік тому

      hey there, Iam also looking to extend features for my honeypot project. Can u tell me how u got the TLS cert for yours

  • @yashchaudhary6146
    @yashchaudhary6146 Рік тому

    At 13:37 you gave a jerk laugh. hahahah, thats cute.

  • @parsec4757
    @parsec4757 3 роки тому +1

    id like this vid twice if i could

  • @daijahn7028
    @daijahn7028 3 роки тому +1

    I also use ubuntu 20.04. But show Aborting. "Debian focal is not supported"?

    • @taylorwalton_socfortress
      @taylorwalton_socfortress  3 роки тому +1

      Hey Dai, I have not tried installing on the Focal distro so I am not sure if that is supported or not. Are you seeing any output from logs? An iso file of the latest version can be downloaded from here: github.com/telekom-security/tpotce/releases/download/20.06.2/tpot.iso
      This comes pre bundled with a supported OS and software to get you up and running quickly. I hope this help and thanks for watching!

  • @newuser1893
    @newuser1893 3 роки тому

    when I start the machine and log in to web UI Kibana takes time to start and after that the connection is lost. I only get like 4 minutes then all the services are lost again. I have to stop the machine and start again, sometimes it's successful then it'll stop.

    • @taylorwalton_socfortress
      @taylorwalton_socfortress  3 роки тому

      Hey, it may be due to not enough memory being allocated to the server. Can you try increasing the memory and see if that helps?
      Thanks for watching!

  • @redhat3831
    @redhat3831 2 роки тому

    excuse me, i get the update IP but cant access the web ui and ssh too, even though the tpot installed successful. thamks for your help

    • @ujjwalstha7420
      @ujjwalstha7420 2 роки тому

      did u solve it?

    • @redhat3831
      @redhat3831 Рік тому

      @@ujjwalstha7420 solved it bro

    • @Sprizzy
      @Sprizzy Рік тому

      Hey there, how did you fix it, please? Thanks.

  • @AhmedAshraf-np5ip
    @AhmedAshraf-np5ip 2 роки тому

    hi thank you for this video but I have some errors like (server.publicBaseUrl misconfiguration) in kibana and if i tried to install tpot again it gives me this error(no kernel modules were found) can you help me and if you have spare time may you join me live meeting??

    • @taylorwalton_socfortress
      @taylorwalton_socfortress  2 роки тому

      What installation method are you using? If you are using the iso file than everything should be set for your correctly at run time.

  • @sheinsopariwala
    @sheinsopariwala 3 роки тому

    How hackers will get to know about your port? through shodan? or is there any other way hacker can know about this ports? basically if I setup my own ssh honeypot will I be able to see my ip on shodan?

    • @taylorwalton_socfortress
      @taylorwalton_socfortress  3 роки тому

      It depends where you host the honeypot server. If you host within an internal network than the only ssh attempts you will capture will be from a user who has access to the internal network. If you host the honeypot server in a publicly available network such as a DMZ than any user or service such as shodan will be able to interact with ssh via port 22.

    • @sheinsopariwala
      @sheinsopariwala 3 роки тому

      @@taylorwalton_socfortress Thanks mate

  • @kamarulbahari3556
    @kamarulbahari3556 3 роки тому

    where you write the command?