GitHub / ait-aecid 15 Repositories
Automatic Event Correlation for Incident Detection
ait-aecid/alert-data-set
Scripts to generate and analyze the AIT alert data set (AIT-ADS)
Language: Python - Size: 6.02 MB - Last synced at: 21 days ago - Pushed at: 21 days ago - Stars: 23 - Forks: 1

ait-aecid/aminer-ansible
Ansible-Role for the logdata-anomaly-miner
Size: 111 KB - Last synced at: 23 days ago - Pushed at: 23 days ago - Stars: 3 - Forks: 2

ait-aecid/rootkit-detection-ebpf-time-trace
Detection of rootkit file hiding activities through analysis of shifts in kernel function execution times.
Language: Python - Size: 118 KB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 8 - Forks: 3

ait-aecid/caraxes
Academic research rootkit using ftrace-hooking to hide files and processes via magic word or user/group. Tested until Linux 6.11.
Language: C - Size: 143 KB - Last synced at: about 2 months ago - Pushed at: about 2 months ago - Stars: 23 - Forks: 0

ait-aecid/kyoushi-simulation
Tool for user and attack simulation
Language: Python - Size: 3 MB - Last synced at: 8 days ago - Pushed at: over 3 years ago - Stars: 3 - Forks: 3

ait-aecid/kyoushi-dataset
Tool for labeling log data from testbeds
Language: Jinja - Size: 791 KB - Last synced at: 10 days ago - Pushed at: over 3 years ago - Stars: 3 - Forks: 0

ait-aecid/LLM-log-parsing
Language: Python - Size: 319 MB - Last synced at: 3 months ago - Pushed at: 3 months ago - Stars: 1 - Forks: 0

ait-aecid/aecid-alert-aggregation
A method for grouping, clustering, and merging semi-structured alerts
Language: Python - Size: 4.05 MB - Last synced at: about 1 month ago - Pushed at: 9 months ago - Stars: 23 - Forks: 5

ait-aecid/comparison-fed-centr-efficient-ad
Language: Python - Size: 8.58 MB - Last synced at: 3 months ago - Pushed at: 3 months ago - Stars: 1 - Forks: 0

ait-aecid/logdata-anomaly-miner
This tool parses log data and allows to define analysis pipelines for anomaly detection. It was designed to run the analysis with limited resources and lowest possible permissions to make it suitable for production server use.
Language: Python - Size: 50.5 MB - Last synced at: 3 months ago - Pushed at: 3 months ago - Stars: 81 - Forks: 24

ait-aecid/anomaly-detection-log-datasets
Analysis scripts for log data sets used in anomaly detection.
Language: Python - Size: 108 MB - Last synced at: 4 months ago - Pushed at: about 1 year ago - Stars: 63 - Forks: 7

ait-aecid/kyoushi-environment
Scripts to deploy virtual testbed for log data analysis and anomaly detection.
Language: Jinja - Size: 8.35 MB - Last synced at: 4 months ago - Pushed at: over 1 year ago - Stars: 23 - Forks: 5

ait-aecid/alert-aggregation-dashboard
Visualization of alerts and meta-alerts
Language: TypeScript - Size: 905 KB - Last synced at: about 2 months ago - Pushed at: over 3 years ago - Stars: 1 - Forks: 0

ait-aecid/clue-lds
This repository contains scripts to carry out anomaly detection in the CLUE log data set.
Language: Python - Size: 61.5 KB - Last synced at: 4 months ago - Pushed at: over 2 years ago - Stars: 8 - Forks: 1

ait-aecid/alert-aggregation-generator
A generator for alerts and meta-alerts to be displayed in the dashboard
Language: Python - Size: 4.05 MB - Last synced at: 4 months ago - Pushed at: over 3 years ago - Stars: 2 - Forks: 0

ait-aecid/kyoushi-generator
Tool to transform testbed models into deployable scripts
Language: Python - Size: 566 KB - Last synced at: 4 months ago - Pushed at: over 3 years ago - Stars: 2 - Forks: 1

ait-aecid/kyoushi-statemachines
User and attacker statemachines for simulation in testbeds
Language: Python - Size: 831 KB - Last synced at: 11 days ago - Pushed at: over 3 years ago - Stars: 2 - Forks: 2

ait-aecid/aminer-configuration-engine
This code allows to generate configurations for the logdata-anomaly-miner (AMiner) based on static log file analysis.
Language: Python - Size: 1.62 MB - Last synced at: about 1 month ago - Pushed at: 8 months ago - Stars: 1 - Forks: 0

ait-aecid/log-preprocessor
This repository contains methods to prepare log data for analysis (extract values, split train/test, etc.)
Language: Jupyter Notebook - Size: 47.9 KB - Last synced at: 4 months ago - Pushed at: 8 months ago - Stars: 1 - Forks: 2

ait-aecid/evaluation-suite
Language: Roff - Size: 138 KB - Last synced at: 4 months ago - Pushed at: 9 months ago - Stars: 0 - Forks: 0

ait-aecid/aminer-deep
Language: Python - Size: 7.11 MB - Last synced at: 4 months ago - Pushed at: about 1 year ago - Stars: 0 - Forks: 1

ait-aecid/aecid-parsergenerator
Automatically create parser trees for textual logdata to facilitate analysis
Language: Python - Size: 3.8 MB - Last synced at: 4 months ago - Pushed at: over 2 years ago - Stars: 4 - Forks: 3

ait-aecid/stide
Evaluation of the stide algorithm on system log data
Language: Python - Size: 4.02 MB - Last synced at: 4 months ago - Pushed at: over 2 years ago - Stars: 2 - Forks: 0

ait-aecid/aecid-incremental-clustering
An efficient method for clustering log data
Language: Python - Size: 811 KB - Last synced at: about 2 months ago - Pushed at: over 3 years ago - Stars: 2 - Forks: 2

ait-aecid/aminer-dashboard
Visualization of AMiner anomalies in Kibana dashboard
Language: Jinja - Size: 60.5 KB - Last synced at: 4 months ago - Pushed at: about 4 years ago - Stars: 2 - Forks: 1

ait-aecid/aminer-aelastic
Middleware that allows logdata-anomaly-miner to process data from elasticsearch
Language: Python - Size: 45.9 KB - Last synced at: 4 months ago - Pushed at: almost 4 years ago - Stars: 2 - Forks: 0

ait-aecid/aminer-akafka
Connector to ingest logs from Kafka
Language: Python - Size: 50.8 KB - Last synced at: 4 months ago - Pushed at: about 3 years ago - Stars: 1 - Forks: 0

ait-aecid/wphashcrack
Tool for WordPress password cracking
Language: Perl - Size: 51.4 MB - Last synced at: 4 months ago - Pushed at: almost 4 years ago - Stars: 3 - Forks: 1

ait-aecid/semtech-loratool
This util sends encrypted lorapackets using the semtech udp-protocol to the gateway.
Language: Python - Size: 38.1 KB - Last synced at: 4 months ago - Pushed at: almost 3 years ago - Stars: 0 - Forks: 0

ait-aecid/count-vector-clustering
Language: Python - Size: 2.87 MB - Last synced at: 4 months ago - Pushed at: over 2 years ago - Stars: 1 - Forks: 0

ait-aecid/dictfilter Fork of cpressland/dictfilter
Filter python dictionaries based on a list of field names.
Language: Python - Size: 36.1 KB - Last synced at: over 2 years ago - Pushed at: almost 4 years ago - Stars: 0 - Forks: 0

ait-aecid/aecid-template-generator
Create character-based templates for clustered log data
Language: Python - Size: 633 KB - Last synced at: 4 months ago - Pushed at: about 3 years ago - Stars: 1 - Forks: 0

ait-aecid/ablocker
Language: Python - Size: 21.5 KB - Last synced at: about 2 months ago - Pushed at: over 3 years ago - Stars: 0 - Forks: 0

ait-aecid/aminer-amqtt
Language: Python - Size: 47.9 KB - Last synced at: about 2 months ago - Pushed at: almost 3 years ago - Stars: 0 - Forks: 1

ait-aecid/aecid-jsonparsergenerator
Automatically create parser trees for logdata available in JSON format to facilitate analysis
Language: Python - Size: 34.2 KB - Last synced at: 4 months ago - Pushed at: about 3 years ago - Stars: 0 - Forks: 1

ait-aecid/aminer-rest
REST-API for the logdata-anomaly-miner
Size: 42 KB - Last synced at: 2 months ago - Pushed at: over 4 years ago - Stars: 1 - Forks: 2
