honeypot-log-analyzer
Analyzer the docker honeypot logs
usage:
- Setup a honeypoy
- grab some logs (
docker-compose logs > <filename>.txt
) - run the analyzer (
python3 analyzer.py <filename>.txt
)
> $ python3 analyze.py
Amount of hits processed: [...]
-----------------
Most tried usernames:
[...]
-----------------
Most tried passwords:
[...]
-----------------
Most frequent ips:
[...]
-----------------
Most frequent ports:
[...]
Four images get saved:
filename | content |
---|---|
username.png | histogram of the most used usernames |
passwords.png | histogram of the most used passwords |
ip.png | histogram of to most used ips |
port.png | histogram of the most used ports |