Security

Example data/incidents for ES

MichalG1
Path Finder

Hello Team,

I have my training Splunk instance with ES 7.1.

I have used it for training and experiments. Question: is there any "training/example" data i could use to import it there ? The point is: i do not want to configure dozens of TA's/collectors, create real labs with real cybersecurity attacks, instead would love to have a test data so i could learn/experiment/review Splunk ES capabilities.

Anything ?

0 Karma
1 Solution

PickleRick
SplunkTrust
SplunkTrust

PickleRick
SplunkTrust
SplunkTrust

You can use BOTS dataset

https://github.com/splunk/botsv3

MichalG1
Path Finder

Looks great, will test it, thx !

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @MichalG1,

have you access to Splunk Show (show.splunk.com)?

if yes, you already have a complete environment for test and training with all the installed add-ons and data.

Otherwise, it's really difficoult to create a relevant data test environment.

Ciao.

Giuseppe

MichalG1
Path Finder

I can login there (using my instructor account), but see 0 events (both public and invited), any way to get the access there ? Thanks @gcusello !

0 Karma
Get Updates on the Splunk Community!

Splunk Enterprise Security: Your Command Center for PCI DSS Compliance

Every security professional knows the drill. The PCI DSS audit is approaching, and suddenly everyone's asking ...

Developer Spotlight with Guilhem Marchand

From Splunk Engineer to Founder: The Journey Behind TrackMe    After spending over 12 years working full time ...

Cisco Catalyst Center Meets Splunk ITSI: From 'Payments Are Down' to Root Cause in ...

The Problem: When Networks and Services Don't Talk Payment systems fail at a retail location. Customers are ...