File tree Expand file tree Collapse file tree 2 files changed +18
-0
lines changed
datasets/attack_techniques/T1222.001/fsutil_symlink_eval Expand file tree Collapse file tree 2 files changed +18
-0
lines changed Original file line number Diff line number Diff line change 1+ version https://git-lfs.github.com/spec/v1
2+ oid sha256:055f282a2c4f1396db511c10ed4016241072fcbfb78e8de64f6614601c554109
3+ size 1949
Original file line number Diff line number Diff line change 1+ author : Nasreddine Bencherchali, Splunk
2+ id : 169da367-87f4-413d-b0c9-b8c13e01d489
3+ date : ' 2025-10-07'
4+ description : Generated datasets for fsutil SymlinkEvaluation set in attack range.
5+ environment : attack_range
6+ directory : fsutil_symlink_eval
7+ mitre_technique :
8+ - T1222.001
9+ dataset :
10+ - name : fsutil_symlink_eval.log
11+ path : /datasets/attack_techniques/T1222.001/fsutil_symlink_eval/fsutil_symlink_eval.log
12+ sourcetypes : XmlWinEventLog
13+ source : ' XmlWinEventLog:Microsoft-Windows-Sysmon/Operational'
14+ references :
15+ - https://learn.microsoft.com/windows-server/administration/windows-commands/fsutil-behavior
You can’t perform that action at this time.
0 commit comments