Elektrine
Log in Register
Paige Chat Timeline Gallery Friends Email Drive DNS Private DNS Domains VPN Kairo Nerve
Remote

HoneyLabs

@HoneyLabs@infosec.exchange
mastodon 4.8.0-alpha.3+glitch
  • Open on infosec.exchange

HoneyLabs is a Dutch threat intel platform built on our own open-source honeypots, Spip and Loom. We capture our own telemetry across all TCP ports. 51M+ records and going!

89 Followers
124 Following
6 Posts
Joined July 13, 2026
HoneyLabs:
https://honeylabs.net
LinkedIn :/:
https://www.linkedin.com/company/honeylabsnet
Open post
HoneyLabs @HoneyLabs@infosec.exchange
· 2mo ago
The Early Actors page is live! While I expect this list to grow a lot over time, you can check it out now: https://honeylabs.net/pre-disclosure This feature detects systems targeting specific, narrow CVE exploit paths days or weeks before any public NVD disclosure or exploit tooling even exists. I'll write a blog post about it once there is more data to analyze.
HoneyLabs - Open-source honeypot telemetry, query-ready
HoneyLabs

HoneyLabs - Open-source honeypot telemetry, query-ready

Free per-IP lookups and an MCP API over a live honeypot dataset. For engineers who want real data, not a marketing pitch.

4
0
3
0
Open post
HoneyLabs @HoneyLabs@infosec.exchange
· 2mo ago
Some IPs probe a CVE's exact exploit path weeks before it's public, and if you're recording, you can see it. On April 11 one of our honeypots logged 16 requests for the cPanel WHM login path on port 2087 from 85[.]122[.]114[.]177, an address that has never touched us otherwise, before or since. 17 days later cPanel disclosed CVE-2026-41940, a 9.8 auth bypass in exactly that flow. Method, formulas, and the live table: https://honeylabs.net/blog/probe-17-days-before-the-cve #ThreatIntel #ThreatHunting #Honeypots #CVE #InfoSec #DFIR
honeylabs.net
0
0
0
0
Open post
HoneyLabs @HoneyLabs@infosec.exchange
· 2mo ago
Added new tools! cve_lookup, top_attackers by=cve, and a better ioc_lookup. https://honeylabs.net/mcp
HoneyLabs - Honeypot telemetry, query-ready
HoneyLabs

HoneyLabs - Honeypot telemetry, query-ready

Free per-IP lookups and an MCP API over a live honeypot dataset. For engineers who want real data, not a marketing pitch.

0
0
0
0
Open post
HoneyLabs @HoneyLabs@infosec.exchange
· 1mo ago
AI crawler impersonation is getting more prevalent these days. Here's a campaign of 26 hosts, scanning with 42,321 different Anthropic user-agents https://honeylabs.net/blog/spoofed-ai-crawlers-one-client
honeylabs.net
0
0
0
0
Open post
HoneyLabs @HoneyLabs@infosec.exchange
· 2mo ago
Replying to
@hrbrmstr@mastodon.social Specialised local LLMs for honeypots seems like a really cool angle. Will be keeping an eye on them!
0
2
0
0
Open post
HoneyLabs @HoneyLabs@infosec.exchange
· 2mo ago
Replying to
@hrbrmstr@mastodon.social Ah, I thought the site referenced using a local LLM. I wonder how they defend against injection attacks. Would be a wild way to priv esc a honeypot.
0
0
0
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

I2P eepsite

j6b6cyk6gjmepjih7jjadxgxvvf3lzzujljuu2v4biemzpg3naya.b32.i2p

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ
  • Lite (no JS)

Legal

  • Terms of Service
  • Privacy Policy
  • Transparency Report
  • Report Abuse
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 17:14:49 UTC