From 02ff9ac10a60d9ccc08bb60fabcd3cd76c43b88c Mon Sep 17 00:00:00 2001 From: nasbench Date: Mon, 17 Nov 2025 23:23:38 +0100 Subject: [PATCH] add asa logs --- datasets/cisco_asa/arcane_door/cisco_asa.yml | 2 +- .../cisco_asa/generic/cisco_asa_generic_logs.log | 3 +++ .../cisco_asa/generic/cisco_asa_generic_logs.yml | 13 +++++++++++++ 3 files changed, 17 insertions(+), 1 deletion(-) create mode 100644 datasets/cisco_asa/generic/cisco_asa_generic_logs.log create mode 100644 datasets/cisco_asa/generic/cisco_asa_generic_logs.yml diff --git a/datasets/cisco_asa/arcane_door/cisco_asa.yml b/datasets/cisco_asa/arcane_door/cisco_asa.yml index a058214b..468516b5 100644 --- a/datasets/cisco_asa/arcane_door/cisco_asa.yml +++ b/datasets/cisco_asa/arcane_door/cisco_asa.yml @@ -1,7 +1,7 @@ author: Bhavin Patel, Micheal Haag, Splunk id: 9e3e8683-75ab-44eb-9c4f-a247fa02d852 date: '2025-09-23' -description: Generated datasets for for Cisco ASA using manual simulation for ArcaneDoor behavior +description: Generated datasets for Cisco ASA using manual simulation for ArcaneDoor behavior environment: attack_range directory: cisco_asa mitre_technique: diff --git a/datasets/cisco_asa/generic/cisco_asa_generic_logs.log b/datasets/cisco_asa/generic/cisco_asa_generic_logs.log new file mode 100644 index 00000000..3c3500fa --- /dev/null +++ b/datasets/cisco_asa/generic/cisco_asa_generic_logs.log @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:7bc1ed80d0fdec58ae2855567b5b3d3951b28fcf9fc42f7356673013d2f7a7fd +size 2491 diff --git a/datasets/cisco_asa/generic/cisco_asa_generic_logs.yml b/datasets/cisco_asa/generic/cisco_asa_generic_logs.yml new file mode 100644 index 00000000..74d51303 --- /dev/null +++ b/datasets/cisco_asa/generic/cisco_asa_generic_logs.yml @@ -0,0 +1,13 @@ +author: Nasreddine Bencherchali, Splunk +id: 95091c84-eb87-4b25-9751-1a922b00882d +date: '2025-10-30' +description: Generated generic dataset for multiple logs generated by Cisco ASA +environment: attack_range +directory: cisco_asa +mitre_technique: +- T1562 +datasets: +- name: cisco_asa_generic_logs + path: /datasets/cisco_asa/generic/cisco_asa_generic_logs.log + sourcetype: cisco:asa + source: not_applicable