Honeypot Or Not?


Enter an IP to check whether it is a honeypot or a real control system:



Honeypot found!

Looks like a real system!


Frequently Asked Questions

  1. How does it work?

    The defining characteristics of known honeypots were extracted and used to create a tool to let you identify honeypots! The probability that an IP is a honeypot is captured in a "Honeyscore" value that can range from 0.0 to 1.0. This is still a prototype/ work-in-progress so if you find some problems please email me at jmath@shodan.io

  2. What's the purpose?

    Honeypots are a great tool for learning more about the Internet, the latest malware being used and keep track of infections. When trying to catch an intelligent attacker though, many honeypots fall short in creating a realistic environment. Honeyscore was created to raise awareness of the short-comings of honeypots.

  3. What technology did you use?

    The Honeyscore website and algorithm uses the following APIs/ frameworks:

  4. Contact information?

    You can reach me at the following locations:

    Email: jmath@shodan.io
    Twitter: @achillean