splunk / attack_data

A repository of curated datasets from various attacks
Apache License 2.0
570 stars 94 forks source link

Nterl0k pingid mfa #846

Closed nterl0k closed 11 months ago

nterl0k commented 11 months ago

PingID/PingOne dataset for upcoming detection PR.

patel-bhavin commented 11 months ago

@nterl0k : can you add a yaml file explaining this dataset

EG: https://github.com/splunk/attack_data/blob/master/datasets/attack_techniques/T1003.001/atomic_red_team/atomic_red_team.yml

nterl0k commented 11 months ago

Oversight on my part, will do directly. Sorry about that.

Regards,

Steven.

-------- Original message -------- From: Bhavin Patel @.> Date: 10/23/23 3:11 PM (GMT-05:00) To: splunk/attack_data @.> Cc: Steven Dick @.>, Mention @.> Subject: Re: [splunk/attack_data] Nterl0k pingid mfa (PR #846)

@nterl0khttps://github.com/nterl0k : can you add a yaml file explaining this dataset

EG: https://github.com/splunk/attack_data/blob/master/datasets/attack_techniques/T1003.001/atomic_red_team/atomic_red_team.yml

— Reply to this email directly, view it on GitHubhttps://github.com/splunk/attack_data/pull/846#issuecomment-1775861335, or unsubscribehttps://github.com/notifications/unsubscribe-auth/AJIYP7WHEICC7ARANGNOGKTYA26OBAVCNFSM6AAAAAA6FPUTLOVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMYTONZVHA3DCMZTGU. You are receiving this because you were mentioned.Message ID: @.***>

patel-bhavin commented 11 months ago

Also, these datasets are probably not uploaded via git lfs , upload it via lfs so that it is available as a media. Thank you!

nterl0k commented 11 months ago

@patel-bhavin uploaded a dataset yaml and reuploaded the log files.

patel-bhavin commented 11 months ago

minor yaml changes and the PR looks good, merged for testing the detections