Merge remote-tracking branch 'origin/topic/awelzel/ctu-sme-11-vm-win7ad'

* origin/topic/awelzel/ctu-sme-11-vm-win7ad:
  zeek-testing: Add Experiment-VM-Microsoft-Windows7AD-1 PCAP and baselines
This commit is contained in:
Arne Welzel 2024-12-05 14:51:01 +01:00
commit 6482a9a8c2
3 changed files with 13 additions and 2 deletions

11
CHANGES
View file

@ -1,3 +1,14 @@
7.1.0-dev.671 | 2024-12-05 14:51:01 +0100
* zeek-testing: Add Experiment-VM-Microsoft-Windows7AD-1 PCAP and baselines (Arne Welzel, Corelight)
The pcap comes from the following dataset [1]:
CTU-SME-11: a labeled dataset with real benign and malicious network
traffic mimicking a small medium-size enterprise environment
[1] https://zenodo.org/records/7958259
7.1.0-dev.668 | 2024-12-04 13:47:10 +0100 7.1.0-dev.668 | 2024-12-04 13:47:10 +0100
* init-bare/zeek-setup: Groundwork for instantiating cluster backends (Arne Welzel, Corelight) * init-bare/zeek-setup: Groundwork for instantiating cluster backends (Arne Welzel, Corelight)

View file

@ -1 +1 @@
7.1.0-dev.668 7.1.0-dev.671

View file

@ -1 +1 @@
4359bd2c0e776dce08f7eca30d3d34cfe3e1d98b dd4b80f8d2c2d033b5b61c95e0f4c89fcfcb29b0