splunk / attack_data

A repository of curated datasets from various attacks
Apache License 2.0
588 stars 95 forks source link

Nterl0k o365 various alerts #888

Closed nterl0k closed 3 months ago

nterl0k commented 7 months ago

Detection data for upcoming content submission. Data taken from testing in a production E3/E5 licensed environment, but sanitized. Covers a number of O365 default/premium security feature alerts or changes to security features.