We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent ec7b71e commit 1e3e6b4Copy full SHA for 1e3e6b4
2 files changed
datasets/attack_techniques/T1021.001/susp_default_rdp_creation/default_rdp_dropped.log
@@ -0,0 +1,3 @@
1
+version https://git-lfs.github.com/spec/v1
2
+oid sha256:23f802141a9dc33ca819fb13e03f4d3f3a55113dc08ea1b6cc8661432bec7818
3
+size 10937
datasets/attack_techniques/T1021.001/susp_default_rdp_creation/susp_default_rdp_creation.yml
@@ -0,0 +1,13 @@
+author: Teoderick Contreras, Splunk
+id: f3a83b08-b334-11f0-894e-629be3538069
+date: '2025-10-27'
4
+description: Generated datasets for susp default rdp creation in attack range.
5
+environment: attack_range
6
+directory: susp_default_rdp_creation
7
+mitre_technique:
8
+- T1021.001
9
+datasets:
10
+- name: default_rdp_dropped.log
11
+ path: /datasets/attack_techniques/T1021.001/susp_default_rdp_creation/default_rdp_dropped.log
12
+ sourcetype: 'XmlWinEventLog'
13
+ source: 'XmlWinEventLog:Microsoft-Windows-Sysmon/Operational'
0 commit comments