File tree Expand file tree Collapse file tree 6 files changed +42
-0
lines changed
datasets/attack_techniques Expand file tree Collapse file tree 6 files changed +42
-0
lines changed Original file line number Diff line number Diff line change
1
+ author : Teoderick Contreras, Splunk
2
+ id : d58e0ba2-5d76-11f0-bda4-629be353806a
3
+ date : ' 2025-07-10'
4
+ description : Generated datasets for moz lib loaded in attack range.
5
+ environment : attack_range
6
+ dataset :
7
+ - https://media.githubusercontent.com/media/splunk/attack_data/master/datasets/attack_techniques/T1218.003/moz_lib_loaded/mozilla_lib.log
8
+ sourcetypes :
9
+ - ' WinEventLog:Security'
10
+ references :
11
+ - https://www.trendmicro.com/vinfo/nz/threat-encyclopedia/malware/trojanspy.win32.vidar.yxdftz
Original file line number Diff line number Diff line change
1
+ version https://git-lfs.github.com/spec/v1
2
+ oid sha256:59040b1f2da45ee7a761755281a29f257f3bcb9d993584e7fdc08ed366ed86a0
3
+ size 4452
Original file line number Diff line number Diff line change
1
+ author : Teoderick Contreras, Splunk
2
+ id : 688a823a-5d79-11f0-bda4-629be353806a
3
+ date : ' 2025-07-10'
4
+ description : Generated datasets for file xml config in attack range.
5
+ environment : attack_range
6
+ dataset :
7
+ - https://media.githubusercontent.com/media/splunk/attack_data/master/datasets/attack_techniques/T1552.001/file_xml_config/filezilla_obj.log
8
+ sourcetypes :
9
+ - ' WinEventLog:Security'
10
+ references :
11
+ - https://www.trendmicro.com/en_us/research/18/k/trickbot-shows-off-new-trick-password-grabber-module.html
Original file line number Diff line number Diff line change
1
+ version https://git-lfs.github.com/spec/v1
2
+ oid sha256:0d7f7f2d1093a6981441bbf3a30ae036549b060f64a150986cdc3da4ea39316c
3
+ size 6046
Original file line number Diff line number Diff line change
1
+ author : Teoderick Contreras, Splunk
2
+ id : c2e6ef24-5d75-11f0-bda4-629be353806a
3
+ date : ' 2025-07-10'
4
+ description : Generated datasets for ie intelliform storage in attack range.
5
+ environment : attack_range
6
+ dataset :
7
+ - https://media.githubusercontent.com/media/splunk/attack_data/master/datasets/attack_techniques/T1552.001/ie_intelliform_storage/storage2_sim.log
8
+ sourcetypes :
9
+ - ' WinEventLog:Security'
10
+ references :
11
+ - https://stackoverflow.com/questions/1276700/where-does-internet-explorer-stores-its-form-data-history-that-is-uses-for-auto
Original file line number Diff line number Diff line change
1
+ version https://git-lfs.github.com/spec/v1
2
+ oid sha256:044f999a446c05689259ab5505af841b60274be6489d44b7d9bd539f80eb7f50
3
+ size 7427
You can’t perform that action at this time.
0 commit comments