Skip to content

Commit f552270

Browse files
authored
Merge pull request #1129 from splunk/xml_runner
xml_runner
2 parents d787a72 + 89a5e30 commit f552270

File tree

4 files changed

+32
-0
lines changed

4 files changed

+32
-0
lines changed
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:fc9968c567767196f07070b297369639197024ef0a103275fa7b873a070359c0
3+
size 7988
Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,13 @@
1+
author: Teoderick Contreras, Splunk
2+
id: 78393210-0113-11f1-b6d6-629be3538068
3+
date: '2026-02-03'
4+
description: Generated datasets for msc execution in attack range.
5+
environment: attack_range
6+
directory: msc_execution
7+
mitre_technique:
8+
- T1218.014
9+
datasets:
10+
- name: loaded_msc_mmc.log
11+
path: /datasets/attack_techniques/T1218.014/msc_execution/loaded_msc_mmc.log
12+
sourcetype: 'XmlWinEventLog'
13+
source: 'XmlWinEventLog:Microsoft-Windows-Sysmon/Operational'
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:44790d426d978a6cbc1eb4a1c56fc5835eab84d9bfb87615e2389f676c8f173f
3+
size 203262
Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,13 @@
1+
author: Teoderick Contreras, Splunk
2+
id: 5b4a49dc-0113-11f1-b6d6-629be3538068
3+
date: '2026-02-03'
4+
description: Generated datasets for mmc script modules in attack range.
5+
environment: attack_range
6+
directory: mmc_script_modules
7+
mitre_technique:
8+
- T1620
9+
datasets:
10+
- name: loaded_module_mmc.log
11+
path: /datasets/attack_techniques/T1620/mmc_script_modules/loaded_module_mmc.log
12+
sourcetype: 'XmlWinEventLog'
13+
source: 'XmlWinEventLog:Microsoft-Windows-Sysmon/Operational'

0 commit comments

Comments
 (0)