Based in San Francisco Bay Area, Securesql is a blog by John Menerick. His insights dissect complex systems, offering a masterclass in cyber guardianship through expert analysis and cutting-edge protective strategies.

ElasticSearch honeypot dataset

I have uploaded a new ElasticSearch honeypot dataset.  It appears there are a few individuals who are attempting to exploit a few 0days in ElasticSearch.  All the more reason not to expose non-battle hardened open source projects to the Internet.  

 

https://github.com/lordappsec/datasets/blob/master/osint/ElasticHoney/elastichoney_logs.json

 

London ISMI log analysis

Interesting exploit detection script for MS15-34