Skip to content

Commit eef6683

Browse files
author
Patrick Bareiss
committed
Merge branch 'master' of github.com:splunk/attack_data
2 parents fd9ba66 + 2c498ab commit eef6683

File tree

8 files changed

+46
-4
lines changed

8 files changed

+46
-4
lines changed
Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,3 +1,3 @@
11
version https://git-lfs.github.com/spec/v1
2-
oid sha256:b0e525f9797055d6abfcdec55af3ea5994cdb2d46a5bdbf9f366d3749f849dd2
3-
size 3060
2+
oid sha256:de886787e69eb239a23040188de48ad3cad4d4b32755c6f59ca897230f00758b
3+
size 3242
Lines changed: 11 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,11 @@
1+
author: Teoderick Contreras, Splunk
2+
id: d58e0ba2-5d76-11f0-bda4-629be353806a
3+
date: '2025-07-10'
4+
description: Generated datasets for moz lib loaded in attack range.
5+
environment: attack_range
6+
dataset:
7+
- https://media.githubusercontent.com/media/splunk/attack_data/master/datasets/attack_techniques/T1218.003/moz_lib_loaded/mozilla_lib.log
8+
sourcetypes:
9+
- 'WinEventLog:Security'
10+
references:
11+
- https://www.trendmicro.com/vinfo/nz/threat-encyclopedia/malware/trojanspy.win32.vidar.yxdftz
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:59040b1f2da45ee7a761755281a29f257f3bcb9d993584e7fdc08ed366ed86a0
3+
size 4452
Lines changed: 11 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,11 @@
1+
author: Teoderick Contreras, Splunk
2+
id: 688a823a-5d79-11f0-bda4-629be353806a
3+
date: '2025-07-10'
4+
description: Generated datasets for file xml config in attack range.
5+
environment: attack_range
6+
dataset:
7+
- https://media.githubusercontent.com/media/splunk/attack_data/master/datasets/attack_techniques/T1552.001/file_xml_config/filezilla_obj.log
8+
sourcetypes:
9+
- 'WinEventLog:Security'
10+
references:
11+
- https://www.trendmicro.com/en_us/research/18/k/trickbot-shows-off-new-trick-password-grabber-module.html
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:0d7f7f2d1093a6981441bbf3a30ae036549b060f64a150986cdc3da4ea39316c
3+
size 6046
Lines changed: 11 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,11 @@
1+
author: Teoderick Contreras, Splunk
2+
id: c2e6ef24-5d75-11f0-bda4-629be353806a
3+
date: '2025-07-10'
4+
description: Generated datasets for ie intelliform storage in attack range.
5+
environment: attack_range
6+
dataset:
7+
- https://media.githubusercontent.com/media/splunk/attack_data/master/datasets/attack_techniques/T1552.001/ie_intelliform_storage/storage2_sim.log
8+
sourcetypes:
9+
- 'WinEventLog:Security'
10+
references:
11+
- https://stackoverflow.com/questions/1276700/where-does-internet-explorer-stores-its-form-data-history-that-is-uses-for-auto
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:044f999a446c05689259ab5505af841b60274be6489d44b7d9bd539f80eb7f50
3+
size 7427
Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,3 +1,3 @@
11
version https://git-lfs.github.com/spec/v1
2-
oid sha256:d197c252915825f105049daec93409572e1e0b6f15d6c2a31656cd320855f02d
3-
size 261785
2+
oid sha256:2ea730acfa2e472b06208196d9e0c914ce0e192788b220f45b0d10389f449d6b
3+
size 253

0 commit comments

Comments
 (0)