4. Event Logs Format
Logs Data
Parameter
Format
Detail
JSON Logs
{
"time": "<event_time>",
"application": "<application_name>",
"log_data": [
"<event_type>",
"<source_ip>",
"<country>",
{
"location": "<location>",
"payload": "<payload>",
"codes": "<codes>",
"action": "<action>",
"engine": "<engine>",
"score": "<machine_learning_score>"
}
]
}Syslog Logs
Attack Types
Value
Attack Type
Payload Locations
Value
Location
Attacks Codes Mapping
Attack Type
MITRE ATT&CK
PCB
Last updated