Skip to content

Commit 9897ce6

Browse files
authored
Merge pull request #1163 from splunk/snap_conversion
Bluehammer Logs
2 parents 93664fc + 874595d commit 9897ce6

3 files changed

Lines changed: 24 additions & 0 deletions

File tree

Lines changed: 18 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,18 @@
1+
author: Raven Tait, Splunk
2+
id: 430623fe-f2ec-42a1-9015-41077aa40f74
3+
date: '2026-04-27'
4+
description: Generated datasets for Bluehammer privilege escalation
5+
in attack range.
6+
environment: attack_range
7+
directory: snapattack
8+
mitre_technique:
9+
- T1068
10+
datasets:
11+
- name: windows-security
12+
sourcetype: XmlWinEventLog
13+
source: XmlWinEventLog:Security
14+
path: /datasets/attack_techniques/T1068/bluehammer/windows-security.log
15+
- name: windows-sysmon
16+
sourcetype: XmlWinEventLog
17+
source: XmlWinEventLog:Microsoft-Windows-Sysmon/Operational
18+
path: /datasets/attack_techniques/T1068/bluehammer/windows-sysmon.log
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:b8eb42204e28a818de619ba3ec78504e0252c08863ea71d5b672cbf58174c563
3+
size 1105
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:2a350bcb6ca3827f1deaf57e415a188807331e49af3a38c5335e58928afef19f
3+
size 6109

0 commit comments

Comments
 (0)