File tree Expand file tree Collapse file tree 2 files changed +7
-2
lines changed
datasets/attack_techniques/T1190/crushftp Expand file tree Collapse file tree 2 files changed +7
-2
lines changed Original file line number Diff line number Diff line change 11author : Michael Haag, Splunk
22id : 1e1c1f1c-0b0b-4b0b-8b0b-0b0b0b0b0b0d
33date : ' 2024-05-23'
4- description : Generated event logs from CrushFTP server from simulated attack leveraging CVE-2024-4040.
4+ description : Generated event logs from CrushFTP server from simulated attack leveraging CVE-2024-4040 and CVE-2025-31161, .
55environment : attack_range
66dataset :
77- https://media.githubusercontent.com/media/splunk/attack_data/master/datasets/attack_techniques/T1190/crushftp/crushftp.log
8+ - https://media.githubusercontent.com/media/splunk/attack_data/master/datasets/attack_techniques/T1190/crushftp/crushftp11_session.log
89sourcetypes :
910- crushftp:sessionlogs
1011references :
1112 - https://attack.mitre.org/techniques/T1190
1213 - https://github.com/airbus-cert/CVE-2024-4040
13- - https://www.bleepingcomputer.com/news/security/crushftp-warns-users-to-patch-exploited-zero-day-immediately/
14+ - https://www.bleepingcomputer.com/news/security/crushftp-warns-users-to-patch-exploited-zero-day-immediately/
15+ - https://www.huntress.com/blog/crushftp-cve-2025-31161-auth-bypass-and-post-exploitation
Original file line number Diff line number Diff line change 1+ version https://git-lfs.github.com/spec/v1
2+ oid sha256:540647b42c934ae59d139c2a3344c1056a412875bf0d04770540e1920d2c6420
3+ size 289353
You can’t perform that action at this time.
0 commit comments