Skip to content

Commit ff4ed5e

Browse files
authored
Merge pull request #1063 from splunk/detection_fixed
detection_fixed
2 parents ec7b71e + da91990 commit ff4ed5e

File tree

2 files changed

+16
-0
lines changed

2 files changed

+16
-0
lines changed
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:8167e56244359d728cb02384cf6a1d4fd25ef4312711fb29b17cca49c7606341
3+
size 2006
Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,13 @@
1+
author: Teoderick Contreras, Splunk
2+
id: 8c89fa4a-b31d-11f0-894e-629be3538069
3+
date: '2025-10-27'
4+
description: Generated datasets for susp default rdp creation in attack range.
5+
environment: attack_range
6+
directory: susp_default_rdp_creation
7+
mitre_technique:
8+
- T1021.001
9+
datasets:
10+
- name: default_rdp.log
11+
path: /datasets/attack_techniques/T1021.001/susp_default_rdp_creation/default_rdp.log
12+
sourcetype: 'XmlWinEventLog'
13+
source: 'XmlWinEventLog:Microsoft-Windows-Sysmon/Operational'

0 commit comments

Comments
 (0)