Skip to content

Commit 75044e8

Browse files
authored
Merge pull request #1122 from splunk/browser_hijack_2
browser_hijack_2
2 parents 284dcf0 + 909a531 commit 75044e8

File tree

8 files changed

+64
-0
lines changed

8 files changed

+64
-0
lines changed
Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,13 @@
1+
author: Teoderick Contreras, Splunk
2+
id: 55ccd628-f85d-11f0-89c9-629be3538068
3+
date: '2026-01-23'
4+
description: Generated datasets for browser disable extension in attack range.
5+
environment: attack_range
6+
directory: browser_disable_extension
7+
mitre_technique:
8+
- T1497
9+
datasets:
10+
- name: chrome_disable_ext.log
11+
path: /datasets/attack_techniques/T1497/browser_disable_extension/chrome_disable_ext.log
12+
sourcetype: 'XmlWinEventLog'
13+
source: 'XmlWinEventLog:Microsoft-Windows-Sysmon/Operational'
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:d162cad6d50fdc778ecff45d4f6e76a6586978c198513958d0f6b24dc337f478
3+
size 4046
Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,13 @@
1+
author: Teoderick Contreras, Splunk
2+
id: 6e7e5bec-f85d-11f0-89c9-629be3538068
3+
date: '2026-01-23'
4+
description: Generated datasets for browser disable logs in attack range.
5+
environment: attack_range
6+
directory: browser_disable_logs
7+
mitre_technique:
8+
- T1497
9+
datasets:
10+
- name: chrome_disable_log.log
11+
path: /datasets/attack_techniques/T1497/browser_disable_logs/chrome_disable_log.log
12+
sourcetype: 'XmlWinEventLog'
13+
source: 'XmlWinEventLog:Microsoft-Windows-Sysmon/Operational'
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:a4d5e688246499207345627a8f667ffc8df45938e9397ec42874e4c1b03b2694
3+
size 1943
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:ad96dcec64437df2fd40258508faca1952f28c82a0aa3b5ab72cd588015eeeab
3+
size 2000
Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,13 @@
1+
author: Teoderick Contreras, Splunk
2+
id: 9d33e0f6-f85d-11f0-89c9-629be3538068
3+
date: '2026-01-23'
4+
description: Generated datasets for chrome disable popup in attack range.
5+
environment: attack_range
6+
directory: chrome_disable_popup
7+
mitre_technique:
8+
- T1497
9+
datasets:
10+
- name: chrome_disable_popup.log
11+
path: /datasets/attack_techniques/T1497/chrome_disable_popup/chrome_disable_popup.log
12+
sourcetype: 'XmlWinEventLog'
13+
source: 'XmlWinEventLog:Microsoft-Windows-Sysmon/Operational'
Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,13 @@
1+
author: Teoderick Contreras, Splunk
2+
id: 842f5932-f85d-11f0-89c9-629be3538068
3+
date: '2026-01-23'
4+
description: Generated datasets for headless browser in attack range.
5+
environment: attack_range
6+
directory: headless_browser
7+
mitre_technique:
8+
- T1497
9+
datasets:
10+
- name: headless_chrome.log
11+
path: /datasets/attack_techniques/T1497/headless_browser/headless_chrome.log
12+
sourcetype: 'XmlWinEventLog'
13+
source: 'XmlWinEventLog:Microsoft-Windows-Sysmon/Operational'
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:a1e27c24bbbb934094eff3ab56e5f730e85a7265b737e3982f2dd20a5dc90a2e
3+
size 4034

0 commit comments

Comments
 (0)