A Real-time Event Correlation platform
-
Updated
Jan 30, 2017 - Java
A Real-time Event Correlation platform
A method for event correlation detection based on Spatial-Temporal-Textual point process
Red team log aggregation and correlation tool with MITRE ATT&CK mapping and SEC integration
A Java concurrent API to asynchronously execute related tasks sequentially, and unrelated tasks concurrently.
Splunk lab detecting SSH brute-force attacks using failed login events, alerts, and dashboards.
Real-integration SOAR pipeline: correlates JumpServer, PacketFence, and Active Directory events into cross-system incidents, then executes gated, human-approved response actions.
Hands-on Active Directory authentication detection lab simulating SOC Tier-1 triage, correlation, and escalation workflows.
Cyber-Physical Event Bridge Prototype
Information Security Analyst
SIEM lab simulating centralized log monitoring, event correlation and alert generation using authentication and system logs with detection rules based on real-world security scenarios.
Cross-domain event correlation via Prometheus Splunk PagerDuty OTel
Access Log Correlator - Python based access log correlation tool for detecting failed login bursts with schema validation and JSON output.
Threat intelligence integration and event correlation platform
Vakaheim (“The Realm of the Vigil”) is a Rust SIEM + SOAR built for continuous, always-on security monitoring.
Cyber SentinelX – Adaptive Threat Monitoring Platform integrating authentication, SOC detection, and real-time threat visualization.
ThreatWeave - Real-time Threat Detection & SIEM Correlation Engine. Correlate security events from AWS CloudTrail, Office 365, Salesforce, Okta & more to detect sophisticated threats & attack patterns. Open-source, production-ready, MIT licensed. 🔐
Python CLI tool for validating, normalizing and correlating security events within configurable time windows.
C++ Sysmon event correlator for advanced threat detection and hunting
Lightweight SOC and SIEM simulation built with Bash for Linux and Termux, featuring log monitoring, event correlation, threat detection, incident response workflows, and security operations automation.
🔍 Detect SSH brute-force attacks with ease using Splunk, leveraging real-time alerts and visual dashboards from simulated Linux authentication logs.
Add a description, image, and links to the event-correlation topic page so that developers can more easily learn about it.
To associate your repository with the event-correlation topic, visit your repo's landing page and select "manage topics."