An Elasticsearch honeypot written in NodeJS, to capture every attempts to exploit CVE-2014-3120 (The default configuration in Elasticsearch before 1.2 enables dynamic scripting, which allows remote attackers to execute arbitrary MVEL expressions and Java code via the source parameter to _search).
more here.................https://github.com/mycert/ESPot
more here.................https://github.com/mycert/ESPot