Giter VIP home page Giter VIP logo

hunterbee's Introduction

My B.Sc. final project on the field of cyber-security and Threat Hunting using Machine Learning approaches.


Description

This project is a highly configurable threat-hunting system that helps security experts and threat hunters gather, manage, and use logs effectively in order to detect and mitigate potential threats. The system works on both system and network logs and consists of two separate programs: one that is deployed on clients to gather logs and filter important data, and another that is deployed on a central server to receive client logs, process them using machine learning techniques, and inform the user if necessary.

Gathering Logs from clients The client-side program is responsible for gathering system and network logs. System logs can be gathered using tools such as Sysmon and Windows Event Logs, and network logs can be gathered using tools such as Wireshark, Snort, and Suricata. Once the logs are gathered, they are compiled and sent to the central server when they reach a certain volume.

Processing Logs in server The server-side program receives the logs from the clients and uses machine learning techniques, such as clustering, to significantly reduce the volume of logs. The remaining logs can then be checked and analyzed by a human expert to complete the threat-hunting process.

Resources

This repository includes a collection of resources on threat hunting and network security, including papers, open source projects, and YouTube videos. These resources can be found in the repository and may be useful for those interested in learning more about threat hunting and staying up-to-date on the latest techniques and tools.

Contribution

If you would like to contribute to this project, we welcome your contributions and would be glad to have your help. Please feel free to fork the repository and submit pull requests with any changes or additions that you think would be beneficial to the project.

Thank you for considering contributing to our threat-hunting system!

hunterbee's People

Contributors

mrezadorudian avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.