You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
A telemetry analysis pipeline that ingests honeypot logs, extracts behavioral features, computes a quantized risk score per event, and visualizes attack frequency and risk levels in Kibana to help SOC teams prioritize alerts.
A real-time Linux log-streaming security tool written in Python that detects SSH brute-force attacks via RegEx and automatically bans offending IPs using iptables.
Ansible role: reputation-tiered fail2ban ban durations. Tor exits and high-risk datacenter addresses get long bans, clean residential ones get short bans. Uses the free keyless ipfastcheck.com API and nftables timeouts.
A Python-based SOC log analyzer that detects SSH brute force, password spraying, account compromise, and blacklisted IPs from Linux authentication logs with dynamic risk scoring and JSON reporting.
🏥 Hospital Brute Force Detector - Real-time RDP/SSH attack detection for healthcare servers. Telegram alerts, IP blocking, and automated incident response for Windows/Linux.
Automated Linux SSH hardening framework enforcing PAM-based MFA and Zero-Trust network access controls. Features idempotent deployment, policy-as-code validation, and continuous compliance auditing via GitHub Actions.