Generate sample security events, attack scenarios, and synthetic alerts for Elastic Security. Use when demoing, populating dashboards, testing detection rules, or setting up a POC.
---
name: security-generate-security-sample-data
description: >
Generate sample security events, attack scenarios, and synthetic alerts for Elastic
Security. Use when demoing, populating dashboards, testing detection rules, or setting
up a POC.
compatibility: >
Requires Node.js 22+, network access to Kibana and Elasticsearch. Environment variables:
KIBANA_URL plus KIBANA_API_KEY or KIBANA_USERNAME/KIBANA_PASSWORD; ELASTICSEARCH_URL
or ELASTICSEARCH_CLOUD_ID plus ELASTICSEARCH_API_KEY or ELASTICSEARCH_USERNAME/ELASTICSEARCH_PASSWORD.
metadata:
author: elastic
version: 0.1.0
---
# Generate Security Sample Data
Generate ECS-compliant security events, multi-step attack scenarios, and synthetic alert documents that populate Elastic
Security dashboards, the Alerts tab, and Attack Discovery.
## Quick start
For a zero-friction experience that generates everything and opens Kibana:
```bash… install to load the full skillIt activates automatically in your next session.
Not connected yet? Connect your AI first →
MCP endpoint
https://skillme.dev/api/mcp