A Real-time Event Correlation platform
-
Updated
Jan 30, 2017 - Java
A Real-time Event Correlation platform
A method for event correlation detection based on Spatial-Temporal-Textual point process
Red team log aggregation and correlation tool with MITRE ATT&CK mapping and SEC integration
A Java concurrent API to asynchronously execute related tasks sequentially, and unrelated tasks concurrently.
Splunk lab detecting SSH brute-force attacks using failed login events, alerts, and dashboards.
Real-integration SOAR pipeline: correlates JumpServer, PacketFence, and Active Directory events into cross-system incidents, then executes gated, human-approved response actions.
Hands-on Active Directory authentication detection lab simulating SOC Tier-1 triage, correlation, and escalation workflows.
Cyber-Physical Event Bridge Prototype
Access Log Correlator - Python based access log correlation tool for detecting failed login bursts with schema validation and JSON output.
SIEM lab simulating centralized log monitoring, event correlation and alert generation using authentication and system logs with detection rules based on real-world security scenarios.
Information Security Analyst
Cross-domain event correlation via Prometheus Splunk PagerDuty OTel
Python-based infrastructure security analytics pipeline for AWS CloudTrail, Linux authentication, and Cisco IOS logs, with detection, correlation, risk scoring, reporting, and OpenSearch indexing.
Vakaheim (“The Realm of the Vigil”) is a Rust SIEM + SOAR built for continuous, always-on security monitoring.
ThreatWeave - Real-time Threat Detection & SIEM Correlation Engine. Correlate security events from AWS CloudTrail, Office 365, Salesforce, Okta & more to detect sophisticated threats & attack patterns. Open-source, production-ready, MIT licensed. 🔐
Threat intelligence integration and event correlation platform
Cyber SentinelX – Adaptive Threat Monitoring Platform integrating authentication, SOC detection, and real-time threat visualization.
Python CLI tool for validating, normalizing and correlating security events within configurable time windows.
C++ Sysmon event correlator for advanced threat detection and hunting
Lightweight SOC and SIEM simulation built with Bash for Linux and Termux, featuring log monitoring, event correlation, threat detection, incident response workflows, and security operations automation.
Add a description, image, and links to the event-correlation topic page so that developers can more easily learn about it.
To associate your repository with the event-correlation topic, visit your repo's landing page and select "manage topics."