Tarpitting SSH with Endlessh
I had a smug moment when I saw security researcher Rob Ricci and friends' paper empirically analysing brute-force attacks against SSH "in the wild". It turns out that putting all your SSH servers on "weird" port numbers - which I've routinely done for over a decade -
https://danq.me/2025/01/06/endlessh-on-debian-12/