AECID
Automatic Event Correlation for Incident Detection
Pinned Loading
Repositories
Showing 10 of 36 repositories
-
- rootkit-detection-ebpf-time-trace Public
Detection of rootkit file hiding activities through analysis of shifts in kernel function execution times.
- aminer-configuration-engine Public
This code allows to generate configurations for the logdata-anomaly-miner (AMiner) based on static log file analysis.
- log-preprocessor Public
This repository contains methods to prepare log data for analysis (extract values, split train/test, etc.)
- logdata-anomaly-miner Public
This tool parses log data and allows to define analysis pipelines for anomaly detection. It was designed to run the analysis with limited resources and lowest possible permissions to make it suitable for production server use.
- aecid-alert-aggregation Public
A method for grouping, clustering, and merging semi-structured alerts
- evaluation-suite Public