feat: update Helm chart version to 1.0.7 and refine suspicious patterns

This commit is contained in:
Lorenzo Venerandi
2026-02-22 16:53:09 +01:00
parent 8daa257fa4
commit 0a5d62f17c
3 changed files with 2 additions and 28 deletions

View File

@@ -2,8 +2,8 @@ apiVersion: v2
name: krawl-chart name: krawl-chart
description: A Helm chart for Krawl honeypot server description: A Helm chart for Krawl honeypot server
type: application type: application
version: 1.0.6 version: 1.0.7
appVersion: 1.0.6 appVersion: 1.0.7
keywords: keywords:
- honeypot - honeypot
- security - security

View File

@@ -579,23 +579,10 @@ wordlists:
command_injection: "(cmd=|exec=|command=|execute=|system=|ping=|host=|&&|\\|\\||;|\\$\\{|\\$\\(|`|\\bid\\b|\\bwhoami\\b|\\buname\\b|\\bcat\\b|\\bls\\b|\\bpwd\\b|\\becho\\b|\\bwget\\b|\\bcurl\\b|\\bnc\\b|\\bnetcat\\b|\\bbash\\b|\\bsh\\b|\\bps\\b|\\bkill\\b|\\bchmod\\b|\\bchown\\b|\\bcp\\b|\\bmv\\b|\\brm\\b|/bin/bash|/bin/sh|cmd\\.exe|/bin/|/usr/bin/|/sbin/)" command_injection: "(cmd=|exec=|command=|execute=|system=|ping=|host=|&&|\\|\\||;|\\$\\{|\\$\\(|`|\\bid\\b|\\bwhoami\\b|\\buname\\b|\\bcat\\b|\\bls\\b|\\bpwd\\b|\\becho\\b|\\bwget\\b|\\bcurl\\b|\\bnc\\b|\\bnetcat\\b|\\bbash\\b|\\bsh\\b|\\bps\\b|\\bkill\\b|\\bchmod\\b|\\bchown\\b|\\bcp\\b|\\bmv\\b|\\brm\\b|/bin/bash|/bin/sh|cmd\\.exe|/bin/|/usr/bin/|/sbin/)"
common_probes: "(/admin|/backup|/config|/database|/private|/uploads|/wp-admin|/login|/phpMyAdmin|/phpmyadmin|/users|/search|/contact|/info|/input|/feedback|/server|/api/v1/|/api/v2/|/api/search|/api/sql|/api/database|\\.env|/credentials\\.txt|/passwords\\.txt|\\.git|/backup\\.sql|/db_backup\\.sql)" common_probes: "(/admin|/backup|/config|/database|/private|/uploads|/wp-admin|/login|/phpMyAdmin|/phpmyadmin|/users|/search|/contact|/info|/input|/feedback|/server|/api/v1/|/api/v2/|/api/search|/api/sql|/api/database|\\.env|/credentials\\.txt|/passwords\\.txt|\\.git|/backup\\.sql|/db_backup\\.sql)"
suspicious_patterns: suspicious_patterns:
- bot
- crawler
- spider
- scraper
- curl
- wget
- python-requests
- scanner
- nikto
- sqlmap - sqlmap
- nmap
- masscan
- nessus - nessus
- acunetix
- burp - burp
- zap - zap
- w3af
- metasploit - metasploit
- nuclei - nuclei
- gobuster - gobuster

View File

@@ -481,23 +481,10 @@
"gunicorn/20.1.0" "gunicorn/20.1.0"
], ],
"suspicious_patterns": [ "suspicious_patterns": [
"bot",
"crawler",
"spider",
"scraper",
"curl",
"wget",
"python-requests",
"scanner",
"nikto",
"sqlmap", "sqlmap",
"nmap",
"masscan",
"nessus", "nessus",
"acunetix",
"burp", "burp",
"zap", "zap",
"w3af",
"metasploit", "metasploit",
"nuclei", "nuclei",
"gobuster", "gobuster",