SSH Sentinel
AzurePower BISecurity AnalyticsHoneypot
Overview
SSH Sentinel is a telemetry-driven honeypot that captures and analyzes SSH attack activity. Deployed on Azure to study real-world intrusion behavior.
Results
- Collected 200K+ SSH attack logs over several weeks
- Parsed and normalized into structured telemetry
- Visualized attack sources with Power BI
- Extracted geo-location and frequency distributions
Tech Stack
Azure VM PowerShell Log Analytics Power BI Python