CyberLearn
← Back to intermediate
Intermediate

SIEM Dashboard

Log aggregation with correlation

Log in to track progress
3–5dFlaskReact

What you'll learn

  • SIEM concepts
  • Log correlation
  • Full-stack development
███████╗██╗███████╗███╗   ███╗
██╔════╝██║██╔════╝████╗ ████║
███████╗██║█████╗  ██╔████╔██║
╚════██║██║██╔══╝  ██║╚██╔╝██║
███████║██║███████╗██║ ╚═╝ ██║
╚══════╝╚═╝╚══════╝╚═╝     ╚═╝

Cybersecurity Projects Python React License: AGPLv3 Live Demo Docker

Full-stack SIEM dashboard with real-time log correlation and MITRE ATT&CK attack scenario simulation engine.

This is a quick overview — security theory, architecture, and full walkthroughs are in the learn modules.

Screenshots & live demo →

What It Does

  • Real-time log ingestion and event correlation with three rule types (Threshold, Sequence, Aggregation)
  • Four YAML-based attack playbooks mapped to MITRE ATT&CK (brute force, DNS tunneling, phishing, privilege escalation)
  • Server-Sent Events for live alert feed with paginated, filterable log viewer
  • Alert lifecycle management (acknowledge, investigate, resolve, false positive)
  • Attack simulation engine that generates realistic multi-stage security events
  • Built with Just for task automation with full Docker Compose deployment

Quick Start

docker compose up -d

Visit http://localhost:8431 or the live demo at siem.carterperez-dev.com

[!TIP] This project uses just as a command runner. Type just to see all available commands.

Install: curl -sSf https://just.systems/install.sh | bash -s -- --to ~/.local/bin

Stack

Backend: Flask, MongoEngine, Redis Streams, Pydantic, Argon2, JWT, Gunicorn

Frontend: React 19, TypeScript, Vite, TanStack Query, Zustand, visx, SCSS Modules

Data: MongoDB 8, Redis 7

Learn

This project includes step-by-step learning materials covering security theory, architecture, and implementation.

ModuleTopic
00 - OverviewPrerequisites and quick start
01 - ConceptsSecurity theory and real-world breaches
02 - ArchitectureSystem design and data flow
03 - ImplementationCode walkthrough
04 - ChallengesExtension ideas and exercises

License

AGPL 3.0