Files
securityonion/salt/suricata/classification.csv
T

2.2 KiB

1attempted-adminAttempted Administrator Privilege Gain1
2attempted-dosAttempted Denial of Service2
3attempted-reconAttempted Information Leak2
4attempted-userAttempted User Privilege Gain1
5bad-unknownPotentially Bad Traffic2
6coin-miningCrypto Currency Mining Activity Detected2
7command-and-controlMalware Command and Control Activity Detected1
8credential-theftSuccessful Credential Theft Detected1
9default-login-attemptAttempt to login by a default username and password2
10denial-of-serviceDetection of a Denial of Service Attack2
11domain-c2Domain Observed Used for C2 Detected1
12exploit-kitExploit Kit Activity Detected1
13external-ip-checkDevice Retrieving External IP Address Detected2
14icmp-eventGeneric ICMP event3
15inappropriate-contentInappropriate Content was Detected1
16misc-activityMisc activity3
17misc-attackMisc Attack2
18network-scanDetection of a Network Scan3
19non-standard-protocolDetection of a non-standard protocol or event2
20not-suspiciousNot Suspicious Traffic3
21policy-violationPotential Corporate Privacy Violation1
22protocol-command-decodeGeneric Protocol Command Decode3
23pup-activityPossibly Unwanted Program Detected2
24rpc-portmap-decodeDecode of an RPC Query2
25shellcode-detectExecutable code was detected1
26social-engineeringPossible Social Engineering Attempted2
27string-detectA suspicious string was detected3
28successful-adminSuccessful Administrator Privilege Gain1
29successful-dosDenial of Service2
30successful-recon-largescaleLarge Scale Information Leak2
31successful-recon-limitedInformation Leak2
32successful-userSuccessful User Privilege Gain1
33suspicious-filename-detectA suspicious filename was detected2
34suspicious-loginAn attempted login using a suspicious username was detected2
35system-call-detectA system call was detected2
36targeted-activityTargeted Malicious Activity was Detected1
37tcp-connectionA TCP connection was detected4
38trojan-activityA Network Trojan was detected1
39unknownUnknown Traffic3
40unsuccessful-userUnsuccessful User Privilege Gain1
41unusual-client-port-connectionA client was using an unusual port2
42web-application-activityaccess to a potentially vulnerable web application2
43web-application-attackWeb Application Attack1