יום שבת, 17 בנובמבר 2012

HoneyMap - A cool tool for raising information security awareness

The HoneyMap shows a free web based real-time visualization of information security related attacks against special sensors around the world.
This map could be used to raise awareness of information security threats around the world.
This project uses hthpfeeds for collecting data from honeypots and MaxMind for translation of IP addresses to geographic locations. 

The red dots represent old unpatched operating systems which are infected with worms and attack other systems (or worse, represents hacking computers).
The yellow dots represent hacking victims.

The HoneyMap tool could be used to search for vulnerable and victim systems around the world using country, city, malware, ip addresses and time information. The relevant information, which is feeded in this project free of charge, could also be used in further research regarding global security threats.  
Many attacks are seemed to be targeted against Aachen, Germany, because there is a very active honeypot at the IT-Security Research Group of the RWTH Aachen University that contributes to this project.

More information about the HoneyMap project could be found here
  
There are more attack 3D visualization projects, including very nice WebGL Globe Visualization and Mesh Grid Heat Map (tested only with Chrome and Firefox). Those projects could be also enhanced using statistical analysis in order to find patterns in global information security threats.

More related information regarding malwebviz (Project 4 - Web based visualization for malware/attack analysis in the Honeynet Project), could be found here.

The interesting Mar. 19, 2012 Honeynet Project Workshop material could be found here.