About Sarang

A monitored nest for
real-world signals.

Sarang is a cybersecurity honeypot project managed by Rimba Siber, capturing and analysing attack attempts directed at a controlled environment in Malaysia.

Why the name

Sarang means “nest”.

The name reflects its role as a monitored trap that attracts malicious actors and records their behaviour without exposing real operational systems.

Collection scope

What the project captures

  • Attacker IP addresses
  • Attack patterns and techniques
  • Malicious payloads and files
  • Credential brute-force attempts

How it works

Controlled collection for threat intelligence

By deploying simulated services and decoy environments, Sarang gathers threat intelligence that can support public awareness, defensive enrichment, and cybersecurity research. The public site presents summaries and downloadable indicators while keeping deeper local analysis separate.

Responsible use

Observed activity is useful, but context still matters.

Indicators collected by a honeypot are valuable for detection and investigation, yet they should be interpreted carefully. Public records show what Sarang observed in its own environment and do not independently prove actor identity or intent.