2016-09-27

As part of a book I am authoring, I am performing a review for open-source projects for anomaly detection using statistical or machine learning techniques for InfoSec - with emphasis on near-real-time log analysis (web logs, system logs, ...), and excluding deep packet inspection techniques. I need your help to make sure the list is complete. To clarify the question: I am not expecting to be referred to standard open source machine learning tools (e.g., Python/Scikit-Learn) or similar platforms, neither to free/freemium closed-source products. I am also not expecting to be referred to academic research in this topic (which I know is lengthy), unless it comes with an open-source toolbox. Thank you in advance. PS: I note this related question: Neural networks & anomaly detection which was however last active 3 years ago, and was too judgmental - I am simply looking for a list of open source tools, not a critical assessment. There is also this: Anomaly intrusion detection where the answer is related, but again the question is different.

Examples of relative resources include:

https://bigsnarf.wordpress.com/2016/05/01/anomaly-detection-python-t-digest/
http://www.mlsec.org

Show more