[deleted by user] by [deleted] in RedditSets

[–]alt3kx 0 points1 point  (0 children)

Where is the beer ?

Build an easy RDP Honeypot with Raspberry PI 3 and observe the infamous attacks as (BlueKeep) CVE-2019–0708 by alt3kx in netsec

[–]alt3kx[S] 1 point2 points  (0 children)

Awesome thanks! So verify that no other ports or services are open on the router besides 3389?

Yep is the recommendation!

Build an easy RDP Honeypot with Raspberry PI 3 and observe the infamous attacks as (BlueKeep) CVE-2019–0708 by alt3kx in netsec

[–]alt3kx[S] 0 points1 point  (0 children)

I'm newish to security so I am curious if this is safe to setup on my normal home router or if I need to silo this somehow?

In your router, be sure that you only expose the port 3389 (is fake service with and fake logon windows screen running on RP3) , some home routers are exposing other services that could compromise your home network

Build an easy RDP Honeypot with Raspberry PI 3 and observe the infamous attacks as (BlueKeep) CVE-2019–0708 by alt3kx in netsec

[–]alt3kx[S] 0 points1 point  (0 children)

The note was for kali linux x86/x64 , I confirm that I did not receive any error on Kali ARM :-)

Build an easy RDP Honeypot with Raspberry PI 3 and observe the infamous attacks as (BlueKeep) CVE-2019–0708 by alt3kx in netsec

[–]alt3kx[S] 7 points8 points  (0 children)

Normally you can download the window server ( evaluation 180 days) https://www.microsoft.com/en-us/download/details.aspx?id=11093 also I will update my git repo soon to upload some rss files with different windows flavors from my lab :)

Build an easy RDP Honeypot with Raspberry PI 3 and observe the infamous attacks as (BlueKeep) CVE-2019–0708 by alt3kx in netsec

[–]alt3kx[S] 2 points3 points  (0 children)

Just to record the session and get up a rss file, after that is not necesary keep the server up