Skip to content

Commit b7ac124

Browse files
authored
Merge pull request #1045 from splunk/wbadmin-rec
add wbadmin rec dataset
2 parents 0311f81 + 19f63c6 commit b7ac124

File tree

2 files changed

+16
-0
lines changed

2 files changed

+16
-0
lines changed
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:8147c4ae0b83ec0155e64a69df1d59189f307054824085c6c32eb8940f131693
3+
size 2161
Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,13 @@
1+
author: Nasreddine Bencherchali, Splunk
2+
id: 0232e68d-338f-4963-8602-614357458534
3+
date: '2025-10-15'
4+
description: Generated datasets covering the execution of wbadmin for recovery in attack range.
5+
environment: attack_range
6+
directory: wbadmin_recovery
7+
mitre_technique:
8+
- T1046
9+
datasets:
10+
- name: wbadmin_recovery.log
11+
path: /datasets/attack_techniques/T1565.001/wbadmin_recovery/wbadmin_recovery.log
12+
sourcetype: XmlWinEventLog
13+
source: 'XmlWinEventLog:Microsoft-Windows-Sysmon/Operational'

0 commit comments

Comments
 (0)