Cybersecurity · SIEM

Log Analyzer Dashboard

A lightweight SIEM for teams without a Splunk budget: parses logs, flags attacks and maps them to ATT&CK.

Demo currently unavailable

View source Space details
Log Analyzer Dashboard, application interface
Interface / Log Analyzer Dashboard Demo currently unavailable
01 / The problem

The challenge.

A full SIEM is expensive and heavy. Small teams still need to spot brute force and scanning in their logs without standing up a Splunk cluster.

02 / The system

The approach.

A Flask dashboard that parses syslog, auth.log and web access logs, flags brute-force and port-scan patterns, and maps every alert to a MITRE ATT&CK technique, with Chart.js visualisations.

03 / Under the surface

Engineering decisions.

  1. Parses syslog, auth.log and web access logs out of the box.

  2. Detects brute-force and port-scan patterns and maps alerts to ATT&CK.

  3. Chart.js dashboard, containerised, runs on a single VM.

04 / What came out of it

The outcome.

Surfaces brute force and port scans in seconds and runs on a single VM, giving a budget-constrained team real detection instead of grepping logs by hand.