A Python-based SOC-style log analyzer that reads .log and .txt files, parses authentication events, and detects simple security anomalies.
- Reads
.logand.txtfiles - Parses authentication-related log lines into structured events
- Detects failed login attempts
- Detects suspicious IP patterns based on repeated failed logins
- Detects time-based anomalies for login activity outside normal hours