log-analysis

Analyze multi-source security logs to identify threat indicators and enable threat hunting.

83|8|Updated May 6, 2026
One-click install
npx skills add https://github.com/Q16G/aster --skill log-analysis-q16g
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: log-analysis
Source: https://github.com/Q16G/aster/tree/main/skills/host-defense/log-analysis
Command: npx skills add https://github.com/Q16G/aster --skill log-analysis-q16g

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

帮助安全团队对多源日志进行关联分析,识别威胁指标,执行威胁狩猎。

Core Features & Use Cases

  • 自动识别日志格式并进行跨源关联
  • 关键事件提取、威胁指标识别与跨源关联分析
  • 支持系统、Web 与应用日志的威胁狩猎场景与报告输出
  • 统计分析与可视化洞察的工作流辅助

Quick Start

分析给定的多源日志并输出威胁狩猎结果。

Frequently Asked Questions about log-analysis

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I perform multi-source log correlation for threat hunting?

Multi-source log correlation for threat hunting is performed by automatically recognizing log formats, extracting key events, and tagging threat indicators across system, web, and application logs to identify security anomalies.

What is the best way to extract threat indicators from SIEM workflows?

Extracting threat indicators from SIEM workflows involves analyzing multi-source security logs to identify threat indicators, enabling cross-source correlation and generating actionable incident response summaries.

Can I use this for anomaly detection across web and system logs?

Yes, anomaly detection works across web, system, and application logs by analyzing multi-source security data to identify threat indicators and enable threat hunting within your environment.

How do I identify threat indicators during incident response using security logs?

Identifying threat indicators during incident response requires analyzing multi-source security logs to extract key events, perform multi-dimensional correlation, and output actionable summaries.

Does multi-source log analysis support automatic log format recognition?

Yes, multi-source log analysis supports automatic log format recognition to facilitate cross-source correlation, threat indicator tagging, and actionable summary generation across diverse security logs.