AI-driven cybersecurity project integrating Cowrie Honeypot and Machine Learning for attacker behavior analysis and security log classification.
-
Updated
Jun 23, 2026 - Python
AI-driven cybersecurity project integrating Cowrie Honeypot and Machine Learning for attacker behavior analysis and security log classification.
Advanced network penetration testing toolkit with SSH vulnerability assessment, CVE-2018-15473 exploitation, stealth brute force capabilities, and fail2ban evasion techniques. Professional-grade security testing framework for authorized penetration testing engagements.
Python script to detect brute force SSH login attempts from raw logs
Brute force attack detection using SSH logs and Fail2Ban with real-world simulation and mitigation.
A telemetry analysis pipeline that ingests honeypot logs, extracts behavioral features, computes a quantized risk score per event, and visualizes attack frequency and risk levels in Kibana to help SOC teams prioritize alerts.
A real-time Linux log-streaming security tool written in Python that detects SSH brute-force attacks via RegEx and automatically bans offending IPs using iptables.
Automated Linux SSH hardening framework enforcing PAM-based MFA and Zero-Trust network access controls. Features idempotent deployment, policy-as-code validation, and continuous compliance auditing via GitHub Actions.
A Telegram bot for monitoring SSH logins and managing fail2ban
An intelligent cybersecurity tool for detecting behavioral SSH anomalies on Linux servers via unsupervised ML and native systemd integration
Splunk SIEM lab — real-time SSH brute force detection, SPL queries, and dashboards mapped to MITRE ATT&CK T1110
🏥 Hospital Brute Force Detector - Real-time RDP/SSH attack detection for healthcare servers. Telegram alerts, IP blocking, and automated incident response for Windows/Linux.
A modular, dependency-aware Cockpit security console for Ubuntu personal servers.
Ansible role: reputation-tiered fail2ban ban durations. Tor exits and high-risk datacenter addresses get long bans, clean residential ones get short bans. Uses the free keyless ipfastcheck.com API and nftables timeouts.
Security Log Analyzer — Flask Web Dashboard for threat detection and brute force analysis
Audit SSH keys for security vulnerabilities, passphrase protection, and key age tracking
Lightweight Python daemon that detects SSH brute-force attacks in real time and auto-blocks IPs via UFW/iptables
Dependency-free Python tool for defensive Linux authentication-log triage and SSH risk signals.
A Python-based SOC log analyzer that detects SSH brute force, password spraying, account compromise, and blacklisted IPs from Linux authentication logs with dynamic risk scoring and JSON reporting.
To associate your repository with the ssh-security topic, visit your repo's landing page and select "manage topics."