Scripts to generate and analyze the AIT alert data set (AIT-ADS)
-
Updated
Jun 17, 2026 - Python
Scripts to generate and analyze the AIT alert data set (AIT-ADS)
Real-Time Detection of Multi-Stage Attacks using Kill Chain State Machines: Detect multi-stage attacks by correlating alerts from Intrusion Detection Systems (IDS) to reconstruct attacks. By prioritising alerts based on the kill chain model the RT-KCSM reduces false-positive alerts.
Companion repository for the paper "Evaluating Cross-Layer Host–Network Telemetry Correlation in a Reproducible SOC Testbed". Includes experimental artifacts, figures, attack scripts, and reproducibility resources.
Declarative alert correlation across multiple sources. Reduce noise, group related alerts, and auto-suppress known patterns with YAML rules. Single Go binary, self-hosted.
🚨 Self-hosted AI alert platform — ingests SMTP and webhook events, analyzes and correlates incidents with LLMs, and routes actionable notifications to Telegram, Matrix, SMS, and webhooks with retries and real-time monitoring.
Add a description, image, and links to the alert-correlation topic page so that developers can more easily learn about it.
To associate your repository with the alert-correlation topic, visit your repo's landing page and select "manage topics."