File tree Expand file tree Collapse file tree 3 files changed +17
-0
lines changed
T1036/executables_suspicious_file_path
datasets/attack_techniques/T1036.005/process_in_programdata Expand file tree Collapse file tree 3 files changed +17
-0
lines changed Original file line number Diff line number Diff line change 1+ version https://git-lfs.github.com/spec/v1
2+ oid sha256:ae3ae67e3f31e6600605b816a2d9a504b7acf7a70e8838fcec9e9dbeccc6ae6f
3+ size 5479
Original file line number Diff line number Diff line change 1+ version https://git-lfs.github.com/spec/v1
2+ oid sha256:7a7e9633dba344d6e5ed31460b870a2aed575eae0183393d49ccf7e695826f59
3+ size 2024
Original file line number Diff line number Diff line change 1+ author : Teoderick Contreras, Splunk
2+ id : c5ebef14-ffea-11ef-bd3a-629be353806a
3+ date : ' 2025-03-13'
4+ description : Generated datasets for process in programdata in attack range.
5+ environment : attack_range
6+ dataset :
7+ - https://media.githubusercontent.com/media/splunk/attack_data/master/datasets/attack_techniques/T1036.005/process_in_programdata/exec_programdata.log
8+ sourcetypes :
9+ - ' XmlWinEventLog:Microsoft-Windows-Sysmon/Operational'
10+ references :
11+ - https://www.microsoft.com/en-us/security/blog/2023/05/24/volt-typhoon-targets-us-critical-infrastructure-with-living-off-the-land-techniques/
You can’t perform that action at this time.
0 commit comments