Splunk lab detecting SSH brute-force attacks using failed login events, alerts, and dashboards.
-
Updated
Jan 5, 2026
Splunk lab detecting SSH brute-force attacks using failed login events, alerts, and dashboards.
A Python utility for analyzing authentication logs and identifying failed SSH login attempts.
Blue Team lab for detecting and analyzing repeated failed SSH login attempts through Linux authentication logs in an isolated environment.
🔍 Detect SSH brute-force attacks with ease using Splunk, leveraging real-time alerts and visual dashboards from simulated Linux authentication logs.
Add a description, image, and links to the authentication-logs topic page so that developers can more easily learn about it.
To associate your repository with the authentication-logs topic, visit your repo's landing page and select "manage topics."