Skip to content

Commit ff5b252

Browse files
authored
Process_Connect events (#1074)
* adding new dataset * access metadata service * updating yaml
1 parent cb3653a commit ff5b252

File tree

2 files changed

+16
-0
lines changed

2 files changed

+16
-0
lines changed
Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,13 @@
1+
author: Bhavin Patel, Splunk
2+
id: 04085959-2f4e-4804-bebc-64daff81d0c4
3+
date: '2025-10-28'
4+
description: This data is created in a K8s cluster running Tetragon and Cisco Isovalent Runtime Security to simulate accessing cloud metadata service.
5+
environment: not_applicable
6+
directory: isovalent_cloud_metadata
7+
mitre_technique:
8+
- T1552.005
9+
datasets:
10+
- name: process_connect
11+
path: /datasets/attack_techniques/T1552.005/isovalent_cloud_metadata/process_connect.log
12+
sourcetype: cisco:isovalent:processConnect
13+
source: not_applicable
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:d8de75328fd801d6516463f94b0bfd818b7ae731d97ced08feac0a7ecd628403
3+
size 15752

0 commit comments

Comments
 (0)