
logparser
A machine learning toolkit for log parsing [ICSE'19, DSN'16]

A machine learning toolkit for log parsing [ICSE'19, DSN'16]

Collection of Google Cloud solution examples and operational utilities for audit log monitoring, DLP de-identification, encryption key management,…

A machine learning toolkit for log-based anomaly detection [ISSRE'16]

A deep learning toolkit for log-based anomaly detection

Open-source security monitoring platform for threat hunting, intrusion detection, log management, incident response, and endpoint visibility with…

Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.

A collection of Splunk's Search Processing Language (SPL) for Threat Hunting with CrowdStrike Falcon

Single-host runtime-security dashboard on eBPF — Go agent + SvelteKit. Live process tree, network map, and rule-based alerts for plain Linux hosts.

Automates Windows memory forensics and DFIR workflows with MemProcFS: YARA/ClamAV scanning, process anomaly detection, and artifact/log extraction.

Basic log analysis tool to detect impossible travel via IP address geographic information

A Microsoft Windows service to provide telemetry on Windows executable memory page changes to facilitate threat detection

A Bro package to identify connections that are bursting (lots of data and transferring quickly).

Splunk app for integrating and analyzing Corelight network detection data, enabling real-time threat hunting and incident response.

Enrich the conn.log with EDR data

Open source log management platform for centralized log aggregation, real-time analysis, and security event monitoring with customizable dashboards…

This repository provides an in-depth analysis of the Log4Shell vulnerability (CVE-2021-44228) and implements a machine learning-based approach to…

Real-time monitoring and slowlog analysis for Valkey and Redis databases with anomaly detection, ACL auditing, and Prometheus metrics export.

Flows-first PCAP TUI (case files, gorgeous UX). Do do do do.