Network honeypot written in Rust
2.8K

A network telnet HoneyPot written in Rust.
volatile) and database (non-volatile) IP and location information cachingThis is the recommended way since it will always makes sure the container remains up.
Make the database directory:
mkdir /var/log/oxipot
Start the container:
docker compose up
Please note this example is using the new
composeplugin and notdocker-compose. Nonetheless, there should be no difference.
Make the database directory:
mkdir /var/log/oxipot
Map port 23 to oxipot's default port, 2223 and specify the directory you want the database to be stored in.
docker run --name oxipot --rm -t -p 23:2223 -v /var/log/oxipot:/oxipot/db:rw oxipot:latest
Directly using the executable is not recommended. This method should be used only if you know your craft.
Download the executable.
Extract the file:
tar -zxvf oxipot.tar.gz
Make it executable:
chmod +x oxipot
Make the database directory:
mkdir db
Run it:
./oxipot
A folder named
dbwill be created in the same directory that will hostoxipot.dbcontaining the intruder reports.
After a connection is made to the machine running oxipot, a sqlite3 database is created that you can refer to in order to see who has connected to the machine and what credentials they have used.
Depending on how you run oxipot, the location of the database will differ.
/var/log/oxipot/oxipot.db./var/log/oxipot/oxipot.db or a custom directory you have specified.oxipot.Utilizing sqlite3, you can view the reports.
Open the database:
sqlite3 /var/log/oxipot/oxipot.db
Run your query:
SELECT * FROM intruders;
The result will be similar to:

This is a hobby project and work in progress prone to many changes. Run at your own risk.
Content type
Image
Digest
sha256:7558adeaa…
Size
6.7 MB
Last updated
10 days ago
docker pull pouriyajamshidi/oxipot