Skip to content

Commit 9bb2364

Browse files
author
Patrick Bareiss
committed
Merge branch 'master' into replay_improvements
2 parents 4735013 + ac68720 commit 9bb2364

File tree

6 files changed

+48
-0
lines changed

6 files changed

+48
-0
lines changed
Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,13 @@
1+
author: Teoderick Contreras, Splunk
2+
id: 1177fe7c-7dd2-11f0-8ab3-629be3538069
3+
date: '2025-08-20'
4+
description: Generated datasets for excel activemicrosoftapp in attack range.
5+
environment: attack_range
6+
directory: excel_activemicrosoftapp
7+
mitre_technique:
8+
- T1021.003
9+
datasets:
10+
- name: sysmon_winprojexe.log
11+
path: /datasets/attack_techniques/T1021.003/excel_activemicrosoftapp/sysmon_winprojexe.log
12+
sourcetype: 'XmlWinEventLog'
13+
source: 'XmlWinEventLog:Microsoft-Windows-Sysmon/Operational'
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:151c77e301c05f9dbb55db88002235c2eecc81cff6d3edd3a614e33d6d4fcad0
3+
size 11820
Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,13 @@
1+
author: Teoderick Contreras, Splunk
2+
id: 7519d2b8-7db7-11f0-8ab3-629be3538069
3+
date: '2025-08-20'
4+
description: Generated datasets for dll loaded in temp in attack range.
5+
environment: attack_range
6+
directory: dll_loaded_in_temp
7+
mitre_technique:
8+
- T1105
9+
datasets:
10+
- name: module_loaded_in_temp.log
11+
path: /datasets/attack_techniques/T1105/dll_loaded_in_temp/module_loaded_in_temp.log
12+
sourcetype: XmlWinEventLog
13+
source: XmlWinEventLog:Microsoft-Windows-Sysmon/Operational
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:f190e90bdefef1523b5af5bade0c217c33efbd0eb8497ea2e812f805c8b1ef72
3+
size 3034
Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,13 @@
1+
author: Teoderick Contreras, Splunk
2+
id: a54f1d38-7dd7-11f0-8ab3-629be3538069
3+
date: '2025-08-20'
4+
description: Generated datasets for disable lsa protection new in attack range.
5+
environment: attack_range
6+
directory: disable_lsa_protection_new
7+
mitre_technique:
8+
- T1556
9+
datasets:
10+
- name: lsa_reg_deletion_modification.log
11+
path: /datasets/attack_techniques/T1556/disable_lsa_protection_new/lsa_reg_deletion_modification.log
12+
sourcetype: 'XmlWinEventLog'
13+
source: 'XmlWinEventLog:Microsoft-Windows-Sysmon/Operational'
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:2837f645d3270b5c2c362f633e0c25f2232b9df8099eed695576cbc754a9f59a
3+
size 51908

0 commit comments

Comments
 (0)