Deploy in minutes
Fully hosted baits we run for you, or a self-hosted agent: one zip, one compose file, zero dependencies on your estate.
docker compose up -d
SilentBait is a deception-security product concept. This public site is a static preview while the hosted service is paused; no baits or live threat monitoring are running.
No sign-in · No live data · No backend actions
The one attack we couldn’t block: the hosting bill.
These are product concepts only. The hosted service is paused: no accounts, baits, alerts, or live monitoring are running.
Fully hosted baits we run for you, or a self-hosted agent: one zip, one compose file, zero dependencies on your estate.
docker compose up -d
Every decoy login is checked against your planted honeycreds and our credential-replay engine in real time. A real password on a bait means a compromised account — the alert is in your inbox in seconds.
Fake shells throttle attackers to two bytes per second while headers, client metadata and every keystroke are captured for forensic replay.
Hard tenant isolation — even our own admins can't read your captured data. Live threat map, kill-chain timeline and per-session forensic replay.
Every alert is a confirmed hostile touch, nothing to triage. Instant email alerts with full session evidence and attacker intel.
The product interface is available as a static preview; live accounts and baits are paused.
Open app previewNo legitimate user ever authenticates to a decoy. So when an attacker sprays a genuine credential against one, the conclusion is certain: that account is compromised, and you know before production is touched.
POST /remote/logincheck
user=j.martin pass=•••••••••••
j.martin — honeycred planted Q3
replay match: seen on ssh-bait-02 ✓
Real password on decoy · confidence 100%
Alert fired · session recorded · TTP 98/100
Autonomous AI agents now run recon at machine speed. They crawl documentation, parse repositories and spray credentials without fatigue, and they trust everything they read. SilentBait turns that trust into a tripwire.
GPT-class agent · 4,100 req/min
parsing /docs /api /llms.txt
runbook-prod.pdf · canary embedded
agent phones home to operator C2
Canary callback fired · source ASN flagged
non-human cadence · TTP 96/100
Illustrative browser-only animations. They do not connect to a backend or process live traffic.
Illustrative architecture only; these services are not running in the current static preview.
SSH · Web portals
VPN · identity traps
API-key auth · scoped keys
ingest-only scope
Validated · normalized
per-tenant records
TTP classification
kill-chain mapping
Live threat map
forensic replay
Browser-only illustrative estimate based on adjustable assumptions, not live service data or measured outcomes. Drag the sliders to explore the model.
Model: 0.85 triage hrs / server / month + 6 hrs per analyst of decoy-covered alert noise · $110/hr fully-loaded SOC cost · deception early-warning cuts dwell time from months to minutes.
Pro and Enterprise include the full console: unlimited alerting, the tarpit engine, every dashboard. No per-event pricing.
Check if we have seen you on the capture network.
For security teams that live in the SOC.
For regulated estates and global deception grids.
Check the capture network free. Deploy your first bait in minutes when you upgrade.
This site is a visual product preview. Accounts, hosted baits, threat lookups, and demo requests are currently offline.