Skip to content

v4.9.109 — Dual-channel Attacks (real + bait)

Choose a tag to compare

@cevdetaksac cevdetaksac released this 26 Aug 14:26
· 7 commits to main since this release

v4.9.109 — Dual-channel Attacks (real + bait)

Honeypot on/off no longer gates real-port brute force reporting.

  • Real: RDP/MSSQL EventLog, OpenSSH Operational, MySQL *.err, IIS FTP W3C 530
  • Bait: separate source=honeypot rows when tunnels started
  • Relocate-aware ports (e.g. RDP 43389 + bait 3389 both visible)
  • Contract 1.4.76 · NETWORK instant email → cloud digest (see contract cloud/ATTACKS_NOTIFY_DUAL_CHANNEL.md)

SHA256 asteria-client-installer.exe:
b03e75ffa5b044f8190078609266d8854807e8997654fecb842a361ef5c64105