CyberPulseIntrusion Lab

Cybersecurity analytics, made readable

Network attacks, explained like a live mission board.

Explore intrusion patterns, tap through high-risk alerts, and get plain-English analyst notes without needing a paid LLM API.

Inspect alerts32.3% malicious traffic
Threat mapLive
32.3%
CriticalDDoS surge
12.4kDDoS
96%Confidence

Flows

63,00042,680 benign

Malicious

20,32032.3% of sample

Top attack

DDoSDominant category

Risk

CriticalRule-based score
Attack mix

What is happening?

DDoS12,480 flows · Critical signal
Analyst notes

Plain-English summary

Critical risk: DDoS activity is the main signal.

The dashboard analyzed 63,000 network flows and found 20,320 malicious flows. DDoS is the dominant attack type, representing 61% of malicious activity.

Malicious traffic makes up 32.3% of the sample. The latest period is up by 740% compared with the first period, which helps an analyst decide whether the situation is escalating or calming down.

Risk level: Critical

Prioritize DDoS triage, review top source IPs, and apply rate limiting or blocking rules where traffic is not expected.

Traffic rhythm

Attack trend by hour

13:004,870 malicious · 4,340 benign
Alert queue

Tap an event to investigate

SOC-1042

DDoS against 10.42.0.18

96%
Source
172.31.69.25
Protocol
TCP
Flows
6,340
  • High packet rate
  • Repeated destination
  • Short flow duration
  • SYN-heavy traffic

Prioritize rate limiting and inspect the destination service for availability impact.