<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Example data/incidents for ES in Security</title>
    <link>https://community.splunk.com/t5/Security/Example-data-incidents-for-ES/m-p/660794#M17327</link>
    <description>&lt;P&gt;Looks great, will test it, thx !&lt;/P&gt;</description>
    <pubDate>Sun, 15 Oct 2023 17:17:54 GMT</pubDate>
    <dc:creator>MichalG1</dc:creator>
    <dc:date>2023-10-15T17:17:54Z</dc:date>
    <item>
      <title>Example data/incidents for ES</title>
      <link>https://community.splunk.com/t5/Security/Example-data-incidents-for-ES/m-p/660785#M17324</link>
      <description>&lt;P&gt;Hello Team,&lt;/P&gt;&lt;P&gt;I have my training Splunk instance with ES 7.1.&lt;/P&gt;&lt;P&gt;I have used it for training and experiments. Question: is there any "training/example" data i could use to import it there ? The point is: i do not want to configure dozens of TA's/collectors, create real labs with real cybersecurity attacks, instead would love to have a test data so i could learn/experiment/review Splunk ES capabilities.&lt;/P&gt;&lt;P&gt;Anything ?&lt;/P&gt;</description>
      <pubDate>Sun, 15 Oct 2023 08:16:41 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Example-data-incidents-for-ES/m-p/660785#M17324</guid>
      <dc:creator>MichalG1</dc:creator>
      <dc:date>2023-10-15T08:16:41Z</dc:date>
    </item>
    <item>
      <title>Re: Example data/incidents for ES</title>
      <link>https://community.splunk.com/t5/Security/Example-data-incidents-for-ES/m-p/660787#M17325</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/255865"&gt;@MichalG1&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;have you access to Splunk Show (show.splunk.com)?&lt;/P&gt;&lt;P&gt;if yes, you already have a complete environment for test and training with all the installed add-ons and data.&lt;/P&gt;&lt;P&gt;Otherwise, it's really difficoult to create a relevant data test environment.&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
      <pubDate>Sun, 15 Oct 2023 13:30:32 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Example-data-incidents-for-ES/m-p/660787#M17325</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2023-10-15T13:30:32Z</dc:date>
    </item>
    <item>
      <title>Re: Example data/incidents for ES</title>
      <link>https://community.splunk.com/t5/Security/Example-data-incidents-for-ES/m-p/660789#M17326</link>
      <description>&lt;P&gt;You can use BOTS dataset&lt;/P&gt;&lt;P&gt;&lt;A href="https://github.com/splunk/botsv3" target="_blank"&gt;https://github.com/splunk/botsv3&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 15 Oct 2023 14:58:12 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Example-data-incidents-for-ES/m-p/660789#M17326</guid>
      <dc:creator>PickleRick</dc:creator>
      <dc:date>2023-10-15T14:58:12Z</dc:date>
    </item>
    <item>
      <title>Re: Example data/incidents for ES</title>
      <link>https://community.splunk.com/t5/Security/Example-data-incidents-for-ES/m-p/660794#M17327</link>
      <description>&lt;P&gt;Looks great, will test it, thx !&lt;/P&gt;</description>
      <pubDate>Sun, 15 Oct 2023 17:17:54 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Example-data-incidents-for-ES/m-p/660794#M17327</guid>
      <dc:creator>MichalG1</dc:creator>
      <dc:date>2023-10-15T17:17:54Z</dc:date>
    </item>
    <item>
      <title>Re: Example data/incidents for ES</title>
      <link>https://community.splunk.com/t5/Security/Example-data-incidents-for-ES/m-p/660795#M17328</link>
      <description>&lt;P&gt;I can login there (using my instructor account), but see 0 events (both public and invited), any way to get the access there ? Thanks&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/161352"&gt;@gcusello&lt;/a&gt;&amp;nbsp;!&lt;/P&gt;</description>
      <pubDate>Sun, 15 Oct 2023 17:18:54 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Example-data-incidents-for-ES/m-p/660795#M17328</guid>
      <dc:creator>MichalG1</dc:creator>
      <dc:date>2023-10-15T17:18:54Z</dc:date>
    </item>
  </channel>
</rss>

