Cowrie - Tool

Threat entity extracted from intelligence sources

Frequency
3
occurrences
First Seen
March 12, 2026
Last Seen
September 3, 2026

Related Threat Clusters

  • Default Credentials in IoT Devices Lead to Security Breaches

    Recent analysis reveals that default credentials in Internet of Things (IoT) devices remain a significant security vulnerability. A guest diary by Adam Thorman highlights a case where multiple IP addresses of a newly…

    2 articles · Updated March 12, 2026
  • Honeypot-Omaha: Vulnerable DShield Sensor Attracts Threat Actors

    Honeypot-Omaha is a DShield Sensor at the Internet Storm Center designed to attract cyber threats. It utilizes the cowrie tool to emulate SSH and Telnet ports, logging activities of potential threat actors. The system…

    2 articles · Updated September 3, 2026

Recent Intelligence Reports

  • Honeypot-Omaha and batch.py [Guest Diary], (Wed, Sep 2nd) — Isc.Sans.Edu · September 3, 2026
  • ISC Stormcast For Thursday, September 3rd, 2026 https://isc.sans.edu/podcastdetail/10080, (Thu, Sep 3rd) — Isc.Sans.Edu · September 3, 2026
  • When your IoT Device Logs in as Admin, It?s too Late! [Guest Diary], (Wed, Mar 11th) — Isc.Sans.Edu · March 12, 2026

CVSS v3.1 Breakdown