why are we provided with files " train_files_containing_attacks.txt' and "t est_files_ordering_for_submission.txt" ?
The first file indicates which log files from the training data correspond to cyberattacks.
The second file shows the ordering of predictions for test data that is expected in submissions.
I hope it helps. Andrzej Janusz