Hi experts,
Do you have any demo logs that I can simulate and show case to people about google chronicle?
Can you share more detail about the scenario you'd like to demonstrate using the demo logs? For example, are you trying to simulate a use case related to malware execution, reconnaissance, or something else? Do you already have a logging pipeline set up, and if so do you have existing log sources that you can work with?
Hi,
Thanks for the reply. I may want to simulate a ransomware attack but getting the necessary log source to pipe to chronicle is too much of a work since the time given by the customer to see the prove of concept is pretty short. Furthermore, customer are not willing to share their logs and us been MSSP will have to find ways to simulate as close as the customer environment. Hence I was thinking whether is there any logs replay that google have and show case to the customer.
You can use Warstory Demo Lab.
goo.gle.com/chroniclelab
it leads to godaddy website for me.
Sorry
Its goo.gle/chroniclelab
If the warstory environment doesn't have what you need - you can get data in quickly through bindplane.
However, id reach out to my account team and see what they can provide.
Hi @dnehoda,
I appreciate your help on this. My goal is to have a o365, firewall, Active directory, client machines and edr to simulate ransomware attacks.
Lastly to have a WAF and website to simulate xss and SQL injection.
This is the reason why it is a hassle to create a full environment on my end to show case to customer. If google has anything it will be much more easier for me to show customer.
Hi I think they updated the link for demo instance could you provide the new instance for the demo instance link? Thank you
I think it’s not working on my side. I’ve already check this link if I click the link it goes to login in contact Google Cloud Security. Is there any new link for demo instance?
There was an issue with that resource this week but it is working again.
It’s working in my side now. Thank you!