
fastnetmon
Very fast DDoS sensor with sFlow/Netflow/IPFIX/SPAN support
anomaly-detectionincident-responselog-analysis+5
3.7k1 month ago

Very fast DDoS sensor with sFlow/Netflow/IPFIX/SPAN support

Advanced detection of port scanning, DoS and malware attacks using Machine Learning techniques

Blue-team SIEM lab: Wazuh 4.7.5 detecting 7 simulated attacks (SSH brute force, Slowloris DoS / CVE-2007-6750, web attacks) with real-time MITRE…