jestasecurity/thumper
Thumper is an open-source tripwire for the Shai-Hulud npm worm. Plant fake-but-realistic credentials where the worm scans - the instant one is read, you know the box might be breached. Free and built in the open by Jesta.
GitHub repository with 39 stars and 1 forks.
Language: Python
Topics: canary, canarytokens, credential-theft, devsecops, endpoint-security, honeytoken, honeytokens, incident-response, malware-detection, npm