Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 1 addition & 1 deletion datasets/cisco_secure_access/dns/dns.yml
Original file line number Diff line number Diff line change
@@ -1,4 +1,4 @@
author: Bhavin Patel, Splunk
author: Mahamudul Chowdhury, Bhavin Patel, Splunk
id: 9ac78446-a25a-42a5-b022-a01de06752e7
date: '2026-05-06'
description: |
Expand Down
Git LFS file not shown
15 changes: 15 additions & 0 deletions datasets/cisco_secure_access/proxy/proxy.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,15 @@
author: Mahamudul Chowdhury, Bhavin Patel, Splunk
id: b25742dd-1536-4173-a3fa-19f1583c834f
date: '2026-05-08'
description: |
Sample Cisco Secure Access proxy events representing automated web reconnaissance behavior.
The dataset includes high-volume HTTP 401/403/404 access errors across many unique URLs from a single source, consistent with directory and content enumeration tooling.
environment: custom
directory: cisco_secure_access/proxy
mitre_technique:
- T1595
datasets:
- name: automated_web_recon_http_errors
path: /datasets/cisco_secure_access/proxy/automated_web_recon_http_errors.log
source: cisco_cloud_security_addon
sourcetype: cisco:cloud_security:proxy
Loading