← All projects

HoneyShield AI

JH26-R720

ByteForge · Dhaka · ByteForge · 3 members · Spirit of July

Monitor attacker in real time , analyze malicious behaviour, visualize attack trends , and improve IoT security using AI powered Honeypots

The problem

The rapid growth of Internet of Things (IoT) devices has significantly increased the number of vulnerable systems connected to the internet. Many devices, such as routers, IP cameras, and smart home equipment, are deployed with weak passwords, outdated firmware, or poor security configurations, making them attractive targets for cybercriminals. Organizations, researchers, and security teams often have limited visibility into how these attacks occur, making it difficult to study attacker behavior and strengthen defenses. This challenge is especially important for educational institutions, cybersecurity researchers, and organizations managing IoT infrastructure, where understanding real attack patterns is essential for improving security and incident response.

The solution

HoneyShield is a real-time IoT honeypot platform that safely simulates vulnerable IoT devices to attract and monitor cyberattacks without exposing real systems. The platform captures login attempts, credentials, shell commands, and exploit activities, then securely forwards this telemetry to a FastAPI backend for storage and analysis. A modern React-based Security Operations Center (SOC) dashboard provides live attack visualization, protocol filtering, severity classification, and threat analytics. By converting attacker interactions into actionable security intelligence, HoneyShield helps researchers, students, and security professionals analyze emerging threats, improve cybersecurity training, and enhance IoT security awareness in a controlled and scalable environment.

Tech stack

Tech Stack and Third-Party Components Programming Languages: Java 17 Python 3.11 TypeScript SQL HTML/CSS Frontend: React 18 Vite Axios Backend: FastAPI SQLAlchemy Alembic JWT Authentication Database: PostgreSQL SQLite (local honeypot logging) Honeypot Engine: Apache MINA SSHD BouncyCastle Infrastructure & DevOps: Docker Docker Compose Maven npm pip APIs & Communication: REST API HTTP/1.1 API Relay JSON-based event exchange Third-Party Components: Apache MINA SSHD BouncyCastle FastAPI React PostgreSQL SQLAlchemy Alembic Axios Docker

AI tools used (section 5 disclosure)

Puku AI, Antrigravity