Skip to content

Commit 6b7f705

Browse files
committed
Update yml files to fix validation issues
1 parent ed9e11c commit 6b7f705

File tree

2 files changed

+8
-8
lines changed

2 files changed

+8
-8
lines changed

datasets/attack_techniques/T1553.001/atomic_red_team/macos_gatekeeper_bypass_xattr/macos_gatekeeper_bypass_xattr.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -3,9 +3,9 @@ id: bc5865ff-2ea2-4b78-b34b-f2b375d464a3
33
date: '2025-12-16'
44
description: Generated dataset for MacOS Gatekeeper Bypass using xattr
55
environment: vm
6-
dataset:
7-
- https://media.githubusercontent.com/media/splunk/attack_data/master/datasets/attack_techniques/T1553.001/atomic_red_team/macos_gatekeeper_bypass_xattr/macos_gatekeeper_bypass_xattr.log
8-
sourcetypes:
9-
- osquery:results
6+
datasets:
7+
- name: macos_gatekeeper_bypass_xattr.log
8+
path: https://media.githubusercontent.com/media/splunk/attack_data/master/datasets/attack_techniques/T1553.001/atomic_red_team/macos_gatekeeper_bypass_xattr/
9+
sourcetype: 'osquery:results'
1010
references:
1111
- https://www.atomicredteam.io/atomic-red-team/atomics/T1553.001

datasets/attack_techniques/T1553.001/macos_gatekeeper_bypass_LSFileQuarantineEnabled/macos_gatekeeper_bypass_LSFileQuarantineEnabled.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -3,9 +3,9 @@ id: fbcfb4fb-1be3-4348-87d3-60c68a0b6334
33
date: '2025-12-16'
44
description: Generated dataset for MacOS Gatekeeper Bypass by making changes to LSFileQuarantineEnabled field in Info.plist
55
environment: vm
6-
dataset:
7-
- https://media.githubusercontent.com/media/splunk/attack_data/master/datasets/attack_techniques/T1553.001/macos_gatekeeper_bypass_LSFileQuarantineEnabled/macos_gatekeeper_bypass_LSFileQuarantineEnabled.log
8-
sourcetypes:
9-
- osquery:results
6+
datasets:
7+
- name: macos_gatekeeper_bypass_LSFileQuarantineEnabled.log
8+
path: https://media.githubusercontent.com/media/splunk/attack_data/master/datasets/attack_techniques/T1553.001/macos_gatekeeper_bypass_LSFileQuarantineEnabled/
9+
sourcetypes: 'osquery:results'
1010
references:
1111
- https://attack.mitre.org/detectionstrategies/DET0288

0 commit comments

Comments
 (0)