Skip to content

Commit ff9fe66

Browse files
authored
Merge pull request #1103 from splunk/default_named_pipes
Add attack data for named pipes used by tools
2 parents d5b2f93 + da30ec6 commit ff9fe66

File tree

2 files changed

+17
-0
lines changed

2 files changed

+17
-0
lines changed
Lines changed: 14 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,14 @@
1+
author: Raven Tait, Splunk
2+
id: e7dc3e89-157f-41bc-97d3-9161fa9a5620
3+
date: '2025-12-05'
4+
description: Manual generation of attack data to generate default
5+
named pipes associated with offensive tools.
6+
environment: custom
7+
directory: named_pipes
8+
mitre_technique:
9+
- T1055
10+
datasets:
11+
- name: windows-sysmon
12+
path: /datasets/attack_techniques/T1055/named_pipes/windows-sysmon.log
13+
sourcetype: XmlWinEventLog
14+
source: XmlWinEventLog:Microsoft-Windows-Sysmon/Operational
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:5787440e8de0d873a6d32e5f68e65517b1f3efa0531f312351743847a4746beb
3+
size 38570

0 commit comments

Comments
 (0)