SSH Brute-Force Detection & Analysis
A SOC-style Splunk dashboard built on a real public SSH authentication dataset, correlating failed-login patterns across thousands of events to identify brute-force sources and confirm whether any resulted in compromise.
SplunkSPLSIEMSSHBrute-Force Detection