Features
Everything a honeypot should be — nothing it shouldn’t.
Decoy services attackers expect. Logs you control. Management that never leaves your network.
Service emulation
HoneyBox answers on the protocols scanners hunt for, so you capture intent without exposing real systems.
- FTP
- SSH
- Telnet
- SMTP
- DNS
- POP3
- IMAP
- HTTPS
- SMB
- MySQL
- RDP
- VNC
- HTTP
SD card logging
Every connection attempt is written locally. Pull the card, open the logs, keep an archive that isn’t rented from a SaaS vendor.
Optional email alerts
Want a ping when something interesting knocks? Configure alerts from the LAN UI — still your mail path, still your rules.
LAN web UI
Enable or disable ports, review activity, and configure the device from a browser on your network.
Companion PWA
Manage HoneyBox from your phone or desktop with the companion progressive web app on your LAN.
Interactive Telnet decoy
Realistic shell responses that waste an attacker’s time and enrich your logs with command attempts.
Port selection
Turn services on or off to match your lab or office exposure profile — run lean or run loud.