aminatafa570-pixel/Sentinel-IA

GitHub: aminatafa570-pixel/Sentinel-IA

一个基于 AI 的安全运营中心平台,通过机器学习驱动的风险评分与告警管理帮助安全团队实时检测、分析和响应网络威胁。

Stars: 0 | Forks: 0

# 🛡️ Sentinel IA ![Python](https://img.shields.io/badge/Python-3.14-blue) ![Streamlit](https://img.shields.io/badge/Streamlit-Dashboard-red) ![AI](https://img.shields.io/badge/AI-Machine%20Learning-purple) ![Cybersecurity](https://img.shields.io/badge/Cybersecurity-SOC-green) ## 基于人工智能的智能网络安全系统 Sentinel IA 是一个智能网络安全平台,旨在实时检测、分析和响应计算机威胁。 该系统结合了: - 自动检测安全事件; - 人工智能分析; - 基于风险评分的决策引擎; - 为安全分析师提供辅助; - 完整的事件追踪记录。 # 主要功能 ## Sentinel IA 决策引擎 AI 引擎会分析每个事件,并根据多个标准分配风险评分。 根据威胁等级,Sentinel IA 可以建议: - 立即封锁 - 临时封锁 - 请求更多信息 - 授权操作 最终决定仍由人类分析师控制。 ## 告警管理 监控可疑事件并自动生成告警。 功能: - 异常检测; - 风险分类; - 告警历史记录。 ## 事件分析 分析师可以对检测到的事件进行调查: - 攻击来源; - 关联事件; - 历史记录; - 执行的操作。 ## 全球攻击地图 地理可视化功能,可用于观察: - 攻击来源; - 威胁定位; - 事件演变。 ## 审计日志 完整的日志记录系统: - 用户操作; - AI 决策; - 安全事件; - 操作历史记录。 # 系统界面 ## 仪表盘 ![Dashboard](https://static.pigsec.cn/wp-content/uploads/repos/cas/e0/e02562ac6b21db25b45048d05c97ba64136bd984ad740d765ad3bcbedc0b2a72.png) ## 告警 ![Alertes](https://static.pigsec.cn/wp-content/uploads/repos/cas/95/951e6c41fa90b68220449b338b87c7c2fdb6e059e6bb435a512052f66516660b.png) ## AI 分析 ![Analyse IA](https://static.pigsec.cn/wp-content/uploads/repos/cas/fd/fd8b84cbf0dca8f8b8086af957168118a7f464e2f3ff73c7244cdb5ff4e14012.png) ## 事件 ![Incidents](https://static.pigsec.cn/wp-content/uploads/repos/cas/bb/bb2e4bc110d72823219c14ffa3f76a1c6b7491242aff85dd799c0964efc0f467.png) ## AI 建议 ![Recommandations](https://static.pigsec.cn/wp-content/uploads/repos/cas/06/0631a628523c4dff6d0022d2944fa9ad054313dc8cdc2bcdecf38074feb2927f.png) ## 审计日志 ![Audit](https://static.pigsec.cn/wp-content/uploads/repos/cas/ba/ba3c039e8e9655757627d834115ca65fbd217edb2e0dcdd3b3bf14c043f19b36.png) ## 世界地图 ![Carte](https://static.pigsec.cn/wp-content/uploads/repos/cas/6d/6dca5dd109ce3970fdc2beeecc5211dcc62fbd2e7ac7c5f665dfe3a5d27d8018.png) # 项目架构 # 使用的技术 - Python - 人工智能 - Machine Learning - SQLite 数据库 - Streamlit - 事件分析 - 网络安全 # 目标 创建一个智能系统,能够辅助网络安全团队检测、分析和响应网络攻击。
标签:AMSI绕过, FOFA, Kubernetes, Python, Streamlit, 人工智能, 威胁检测, 安全运营中心 (SOC), 无后门, 用户模式Hook绕过, 网络安全, 访问控制, 逆向工具, 隐私保护