Skip to content

Commit 3143e86

Browse files
authored
Merge pull request #1111 from splunk/browser_hijack
browser_hijack
2 parents 7fb22b6 + 8623025 commit 3143e86

File tree

6 files changed

+48
-0
lines changed

6 files changed

+48
-0
lines changed
Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,13 @@
1+
author: Teoderick Contreras, Splunk
2+
id: a48c7e9c-db4f-11f0-a898-629be3538069
3+
date: '2025-12-17'
4+
description: Generated datasets for chrome allow list in attack range.
5+
environment: attack_range
6+
directory: chrome_allow_list
7+
mitre_technique:
8+
- T1185
9+
datasets:
10+
- name: chrome_extension_allow_list.log
11+
path: /datasets/attack_techniques/T1185/chrome_allow_list/chrome_extension_allow_list.log
12+
sourcetype: 'XmlWinEventLog'
13+
source: 'XmlWinEventLog:Microsoft-Windows-Sysmon/Operational'
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:49a050f421ad3007dd5783ebc999fc27c167b7f976b85e6e815ea9049ae6aa05
3+
size 14295
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:c34b0e4b20f1920ccf7f573246ddd96f1c9ffe33a58a170222e75f2109888030
3+
size 4244
Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,13 @@
1+
author: Teoderick Contreras, Splunk
2+
id: 7b328a46-db4f-11f0-a898-629be3538069
3+
date: '2025-12-17'
4+
description: Generated datasets for chrome load extensions in attack range.
5+
environment: attack_range
6+
directory: chrome_load_extensions
7+
mitre_technique:
8+
- T1185
9+
datasets:
10+
- name: chrome_load_extension.log
11+
path: /datasets/attack_techniques/T1185/chrome_load_extensions/chrome_load_extension.log
12+
sourcetype: 'XmlWinEventLog'
13+
source: 'XmlWinEventLog:Microsoft-Windows-Sysmon/Operational'
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:399a1f134928d5586631f43ff495e9bc8a87c042a4b9f9803b05c825bf1f4899
3+
size 6426
Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,13 @@
1+
author: Teoderick Contreras, Splunk
2+
id: ba339474-db4f-11f0-a898-629be3538069
3+
date: '2025-12-17'
4+
description: Generated datasets for disable chrome update in attack range.
5+
environment: attack_range
6+
directory: disable_chrome_update
7+
mitre_technique:
8+
- T1185
9+
datasets:
10+
- name: disable_chrome_update.log
11+
path: /datasets/attack_techniques/T1185/disable_chrome_update/disable_chrome_update.log
12+
sourcetype: 'XmlWinEventLog'
13+
source: 'XmlWinEventLog:Microsoft-Windows-Sysmon/Operational'

0 commit comments

Comments
 (0)