AlienVault Open Source SIM (OSSIM) is a complete Security Management solution that detects and profiles attacks, and provides a comprehensive, intelligent Security Management platform and toolset. The entire solution is composed of open source distributions including all seamlessly integrated tools, and the security management platform. The OSSIM project was created and is currently coordinated by the founders of AlienVault.
You can download it here.One of the really powerful features is the ability to aggregate logs from heterogeneous devices and co-relate them to find security incidents in the network. The
first video below takes us through a quick run of the new and latest features in OSSIM. The
second one shows us a demo of how to use OSSIM to detect attacks.