Daemon to ban hosts that cause multiple authentication errors
翻译 - 守护程序禁止导致多个身份验证错误的主机
OSSEC is an Open Source Host-based Intrusion Detection System that performs log analysis, file integrity checking, policy monitoring, rootkit detection, real-time alerting and active response.
翻译 - OSSEC是基于开源主机的入侵检测系统,它执行日志分析,文件完整性检查,策略监视,rootkit检测,实时警报和主动响应。
Wazuh - Docker containers
翻译 - Wazuh - Docker containers
Plugins for Wazuh Dashboard
Wazuh - Project documentation
Wazuh - Tools for packages creation
A mixed repository of Powershell scripts...
Simple & efficient log file scanning and iptable filtering
Spark Application for analysis of Apache Access logs and detect anamolies! Along with Medium Article.
Official OSSEC docker container
Python 3 script for analyzing Apama correlator log files and extracting useful diagnostic information