Dionaea Honeypot with ELK Stack

A honeypot solution combining the Dionaea framework with the ELK stack (Elasticsearch, Logstash, Kibana) for real-time attack capture and analysis. Monitors HTTP, SMB, MySQL, FTP, Telnet, and more — generating threat intelligence visualized through interactive Kibana dashboards.

A honeypot solution combining the Dionaea framework with the ELK stack (Elasticsearch, Logstash, Kibana) for real-time attack capture and analysis. It monitors multiple protocols, generates threat intelligence, and visualizes attack data through interactive Kibana dashboards.

Key Features:

  • Dionaea honeypot monitoring HTTP, SMB, MySQL, FTP, Telnet, and more
  • Real-time attack capture and malware collection
  • ELK stack pipeline for log ingestion and enrichment
  • Interactive Kibana dashboards for attack visualization
  • Threat intelligence generation from captured attack data
  • Fully containerized deployment with Docker