I'm curious as to what OS and services you guys are using for your honeypots. I setup a RedHat 9 honeypot with a weak SSH password and learned a lot from it. Now I'm thinking about using Ubuntu 8.04, but am unsure what services I should enable.
A search for common *nix services on the National Vulnerability Database (http://nvd.nist.gov/) doesn't show many recent vulnerabilities that result in execution of arbitrary code. What vulnerabilities have you guys had a lot of success with?
_______________________________________________ Honeywall mailing list [email protected] https://public.honeynet.org/mailman/listinfo/honeywall
