Skip to content

Commit d787a72

Browse files
authored
add encoded url via curl (#1127)
1 parent 6acb283 commit d787a72

File tree

3 files changed

+23
-0
lines changed

3 files changed

+23
-0
lines changed
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:17e68325c4a924d85169fe4a1754c9d74f51a0b4f5f51fb754c02b37d620c961
3+
size 1755
Lines changed: 17 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,17 @@
1+
author: Nasreddine Bencherchali, Splunk
2+
id: d9db07a0-13da-4fc5-8abe-451188ce3aa1
3+
date: '2026-02-02'
4+
description: Generated dataset for URL encoded curl commands used in obfuscation techniques.
5+
environment: attack_range
6+
directory: url_encoded_curl
7+
mitre_technique:
8+
- T1027
9+
datasets:
10+
- name: linux-sysmon
11+
path: /datasets/attack_techniques/T1027/url_encoded_curl/linux-sysmon.log
12+
sourcetype: sysmon:linux
13+
source: Syslog:Linux-Sysmon/Operational
14+
- name: windows-sysmon
15+
path: /datasets/attack_techniques/T1027/url_encoded_curl/windows-sysmon.log
16+
sourcetype: XmlWinEventLog
17+
source: XmlWinEventLog:Windows-Sysmon/Operational
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:e5ff5e20583627513c6fb99a5763e913fe5c6b6cbc983c13b0c236090968d26c
3+
size 6249

0 commit comments

Comments
 (0)