OpenUBA

screenshot of OpenUBA
flask
react

A robust, and flexible open source User & Entity Behavior Analytics (UEBA) framework used for Security Analytics. Developed with luv by Data Scientists & Security Analysts from the Cyber Security Industry. [PRE-ALPHA]

Overview:

The Open User Behavior Analytics (OUBA) is a flexible open-source User & Entity Behavior Analytics framework designed for Security Analytics. Created by Data Scientists & Security Analysts from the Cyber Security Industry, this project aims to provide a transparent and customizable approach to user behavior analysis.

Features:

  • Open-Model Approach: Allows security analysts to understand the underlying models for anomalies, baselines, and cases.
  • Community-Driven Model Marketplace: Users can access and install security models from a marketplace, encouraging collaboration and model reuse.
  • Modular Architecture: Lightweight and SIEM-agnostic framework with components like Rule Engine, Dashboard, and Model Server for flexibility and scalability.
flask
Flask

Flask is a lightweight and popular web framework for Python, known for its simplicity and flexibility. It is widely used to build web applications, providing a minimalistic approach to web development with features like routing, templates, and support for extensions.

react
React

React is a widely used JavaScript library for building user interfaces and single-page applications. It follows a component-based architecture and uses a virtual DOM to efficiently update and render UI components