SentinelWatch: Monitoring Geolocation of Worldwide RDP Brute Force Attacks in Real Time
摘要
In an always changing cybersecurity environment, it is noteworthy to have proactive security input to play down the nonstop danger of cyberattacks. The present project introduces a thorough system using Azure Sentinel technology, honeypot technology, and geospatial analytics to enhance cybersecurity insights. Joining Azure Sentinel with a Security Information and Event Management (SIEM) arrangement gives a centralized platform for gathering, analyzing, and reacting to security occurrences. The outcome could entail an elaborate display of attack sources like latitude, longitude, IP address, and so on in the Azure Sentinel Map, revealing the global distribution of threats attacking a system. As cybersecurity evolves so must our defense strategies. In an era characterized by relentless cyber threats, the demand for proactive cybersecurity measures is more critical than ever. The rapidly evolving threat landscape necessitates a paradigm shift in defense strategies. This paper addresses this imperative by proposing a proactive approach grounded in the integration of advanced technologies. This project exemplifies a shift from reactive to proactive cybersecurity information practices.