Log Analyzer Dashboard

📁 Drop log file here
Detected: 0 brute force attempts, 0 port scans, 0 privilege escalations
auth.log - live tail
0
Total Events
0
Errors
0
Warnings
0
Info

Attack Types Detected

Event Timeline

03:14:22 UTC
Brute force detected from 192.168.1.105 (47 attempts)
03:18:47 UTC
Privilege escalation attempt - sudo exploit CVE-2023-22809
03:22:15 UTC
Port scan from 10.0.0.88 - 1024 ports in 12s
03:25:01 UTC
Firewall rule updated - blocked 192.168.1.105
03:31:33 UTC
Suspicious outbound to 45.33.32.156:4444 (reverse shell?)
03:35:00 UTC
Automated containment triggered - host isolated

Top Source IPs

IP AddressEventsThreat
192.168.1.105342HIGH
10.0.0.88189HIGH
172.16.0.5578MEDIUM
45.33.32.15645HIGH
192.168.2.1023MEDIUM

MITRE ATT&CK Mapping