Skip to content

Commit 330e7fe

Browse files
authored
add salt logs (#1178)
1 parent c1d981b commit 330e7fe

2 files changed

Lines changed: 8 additions & 1 deletion

File tree

datasets/emerging_threats/SaltTyphoon/salttyphoon_correlation.yml renamed to datasets/emerging_threats/SaltTyphoon/salttyphoon.yml

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
author: Nasreddine Bencherchali, Splunk
22
id: d403fecb-720c-48fb-9d1a-5671f0195513
33
date: '2026-01-08'
4-
description: Generated datasets for Cisco IOS switch exploitation. Correlating Cisco Secure Firewall logs with Cisco IOS logs to detect SaltTyphoon activities.
4+
description: Generated datasets for Cisco IOS switch exploitation. Including correlation of Cisco Secure Firewall logs with Cisco IOS logs to detect SaltTyphoon activities, as well as standalone IOS XE logs.
55
environment: NA
66
directory: SaltTyphoon
77
mitre_technique:
@@ -11,3 +11,7 @@ datasets:
1111
path: /datasets/emerging_threats/SaltTyphoon/salttyphoon_correlation.log
1212
sourcetype: stash
1313
source: not_applicable
14+
- name: salttyphoon_cisco
15+
path: /datasets/emerging_threats/SaltTyphoon/salttyphoon_cisco.log
16+
sourcetype: cisco:ios
17+
source: not_applicable
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:1b15d16661c25e4d201cf671d65aa3b0c4595b96d8323d8bc156ef8dfc4e8c82
3+
size 10386

0 commit comments

Comments
 (0)