From Splunk to GitHub to Production: A Static Content Pipeline for Security Reports
Most security dashboards are locked inside the tool that generated them. Splunk, Grafana, whatever — useful internally, invisible...
How ClaudeBot fell in love with The MIRE/C³
The one door robots.txt left open: how ClaudeBot found The MIRE/C³ The MIRE/C³ is a Multi-layer Intrusion Response...
The Art of Wasting Hackers’ Time: A Honeypot Experiment
What happens when you turn the tables on automated attackers? The Setup For the past few days, I’ve...
(Another) Day in the Life of an OpenCanary Honeypot
🚨 My 3 OpenCanary honeypots are thriving! 🚨 These little traps are proving to be very popular—if Internet...
OpenCanary 3.0: HowTo
Host and Operating System The basis for any OpenCanary installation is the operating system. Linux is preferred, it...
Extending OpenCanary Monitoring
Expect the Unexpected The unexpected can happen when running OpenCanary instances and this demands some adapting. It’s considerably...
OpenCanary: Login Banner Security
In the greater scheme of things, login warning banners exist to fulfil control requirements. They exist to support...
OpenCanary 3.0 – Evolution not Revolution
USA versus Germany versus Switzerland The OpenCanary trio have been running for some time but, looking at the...
OpenCanary: The Tyranny of the Default
These are the credentials that the three OpenCanary instances have seen. Star Wars-style!
OpenCanary Hacked!
My OpenCanarys run Samba shares in the Internet. Firstly, this was mainly with Canary Tokens left there for...