Download: http Zip File
Number of Instances: | 239357 | Security Area: | Network Protocols |
---|---|---|---|
Number of Attributes: | 27 | Date Donated: | 2012 |
Missing Values? | - | Associated ML Tasks: | Network Analysis |
Mike Sconzo
Security Repository
Secrepo.com
Implements base functionality for HTTP analysis. The logging model is to log request/response pairs and all relevant metadata together in a single record.
Data Type | Count | Unique Values | Missing Values | |
---|---|---|---|---|
ts | float64 | 239357 | 239344 | 0 |
uid | object | 239357 | 107699 | 0 |
id.orig_h | object | 239357 | 128 | 0 |
id.orig_p | int64 | 239357 | 1831 | 0 |
id.resp_h | object | 239357 | 16787 | 0 |
id.resp_p | int64 | 239357 | 81 | 0 |
trans_depth | int64 | 239357 | 224 | 0 |
method | object | 239294 | 7 | 63 |
host | object | 237753 | 15907 | 1604 |
uri | object | 239294 | 135201 | 63 |
referrer | object | 193040 | 13477 | 46317 |
user_agent | object | 237585 | 263 | 1772 |
request_body_len | int64 | 239357 | 541 | 0 |
response_body_len | int64 | 239357 | 40304 | 0 |
status_code | float64 | 237063 | 28 | 2294 |
status_msg | object | 237063 | 78 | 2294 |
info_code | float64 | 1 | 1 | 239356 |
info_msg | object | 1 | 1 | 239356 |
filename | float64 | 0 | 0 | 239357 |
tags | object | 239357 | 2 | 0 |
username | object | 9 | 1 | 239348 |
password | float64 | 0 | 0 | 239357 |
proxied | object | 7 | 1 | 239350 |
orig_fuids | object | 3364 | 3364 | 235993 |
orig_mime_types | object | 3364 | 14 | 235993 |
resp_fuids | object | 204970 | 204950 | 34387 |
resp_mime_types | object | 204970 | 44 | 34387 |
Bro Logs http://gauss.ececs.uc.edu/Courses/c6055/pdf/bro_log_vars.pdf
Neise, Patrick. "Intrusion Detection Through Relationship Analysis". Oct 2016 https://www.sans.org/reading-room/whitepapers/detection/intrusion-detection-relationship-analysis-37352
Frances Bernadette C. De Ocampo, Trisha Mari L. Del Castillo, Miguel Alberto N. Gomez. "AUTOMATED SIGNATURE CREATOR FOR A SIGNATURE BASED INTRUSION DETECTION SYSTEM WITH NETWORK ATTACK DETECTION CAPABILITIES". 2013 http://sdiwc.net/digital-library/automated-signature-creator-for-a-signature-based-intrusion-detection-system-with-network-attack-detection-capabilities-pancakes.html