Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
Git LFS file not shown
12 changes: 12 additions & 0 deletions datasets/attack_techniques/T1030/osquery_data_chunking/osquery.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,12 @@
author: Raven Tait
id: e1ad8f03-6cb5-4ae9-a0c0-b9eb9ff0e4b8
date: '2026-02-19'
description: Generation of Mac OSX techniques logged with osquery
environment: attack_range
mitre_technique:
- T1030
datasets:
- name: osquery:results
sourcetype: osquery:results
source: osquery:results
path: /datasets/attack_techniques/T1030/osquery_data_chunking/osquery.log
Git LFS file not shown
Original file line number Diff line number Diff line change
@@ -0,0 +1,12 @@
author: Raven Tait
id: 69fb68a6-dce5-400f-8a5e-086abda181aa
date: '2026-02-19'
description: Generation of Mac OSX techniques logged with osquery
environment: attack_range
mitre_technique:
- T1037.002
datasets:
- name: osquery:results
sourcetype: osquery:results
source: osquery:results
path: /datasets/attack_techniques/T1037.002/osquery_logon_scripts/osquery.log
Git LFS file not shown
Original file line number Diff line number Diff line change
@@ -0,0 +1,13 @@
author: Raven Tait
id: a319c571-0d12-4af7-b3dc-a30907e98277
date: '2026-02-20'
description: Generation of Mac OSX techniques logged with osquery
environment: attack_range
mitre_technique:
- T1053.004
datasets:
- name: osquery:results
sourcetype: osquery:results
source: osquery:results
path: /datasets/attack_techniques/T1053.004/osquery_persistence/osquery.log

Git LFS file not shown
Original file line number Diff line number Diff line change
@@ -0,0 +1,12 @@
author: Raven Tait
id: bb5c9118-aec9-4d94-b3a5-cf5e7f422740
date: '2026-02-20'
description: Generation of Mac OSX techniques logged with osquery
environment: attack_range
mitre_technique:
- T1068
datasets:
- name: osquery:results
sourcetype: osquery:results
source: osquery:results
path: /datasets/attack_techniques/T1068/osquery_system_startup/osquery.log
Git LFS file not shown
12 changes: 12 additions & 0 deletions datasets/attack_techniques/T1070/osquery_log_removal/osquery.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,12 @@
author: Raven Tait
id: 06297035-0abf-485a-9c4c-9f416999d845
date: '2026-02-19'
description: Generation of Mac OSX techniques logged with osquery
environment: attack_range
mitre_technique:
- T1070
datasets:
- name: osquery:results
sourcetype: osquery:results
source: osquery:results
path: /datasets/attack_techniques/T1070/osquery_log_removal/osquery.log
Git LFS file not shown
Original file line number Diff line number Diff line change
@@ -0,0 +1,12 @@
author: Raven Tait
id: d93e309a-f7b1-4bef-b8b7-b447f1f616a3
date: '2026-02-20'
description: Generation of Mac OSX techniques logged with osquery
environment: attack_range
mitre_technique:
- T1135
datasets:
- name: osquery:results
sourcetype: osquery:results
source: osquery:results
path: /datasets/attack_techniques/T1135/osquery_share_discovery/osquery.log
Git LFS file not shown
Original file line number Diff line number Diff line change
@@ -0,0 +1,12 @@
author: Raven Tait
id: 06297035-0abf-485a-9c4c-9f416999d845
date: '2026-02-19'
description: Generation of Mac OSX techniques logged with osquery
environment: attack_range
mitre_technique:
- T1136
datasets:
- name: osquery:results
sourcetype: osquery:results
source: osquery:results
path: /datasets/attack_techniques/T1136/osquery_account_creation/osquery.log
3 changes: 3 additions & 0 deletions datasets/attack_techniques/T1543/osquery_ketxload/osquery.log
Git LFS file not shown
12 changes: 12 additions & 0 deletions datasets/attack_techniques/T1543/osquery_ketxload/osquery.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,12 @@
author: Raven Tait
id: 324fc256-70c7-4e68-a32e-e2886f6245bb
date: '2026-02-19'
description: Generation of Mac OSX techniques logged with osquery
environment: attack_range
mitre_technique:
- T1543
datasets:
- name: osquery:results
sourcetype: osquery:results
source: osquery:results
path: /datasets/attack_techniques/T1543/osquery_ketxload/osquery.log
Git LFS file not shown
12 changes: 12 additions & 0 deletions datasets/attack_techniques/T1555.001/osquery_keychains/osquery.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,12 @@
author: Raven Tait
id: d9cbe409-3012-48d7-8926-b5ee0287ee3f
date: '2026-02-19'
description: Generation of Mac OSX techniques involving keychains and osquery
environment: attack_range
mitre_technique:
- T1555.001
datasets:
- name: osquery:results
sourcetype: osquery:results
source: osquery:results
path: /datasets/attack_techniques/T1555.001/osquery_keychains/osquery.log
Git LFS file not shown
Original file line number Diff line number Diff line change
@@ -0,0 +1,12 @@
author: Raven Tait
id: 649730e9-20c1-4776-b902-2c4fc819b00c
date: '2026-02-19'
description: Generation of Mac OSX techniques logged with osquery
environment: attack_range
mitre_technique:
- T1564.001
datasets:
- name: osquery:results
sourcetype: osquery:results
source: osquery:results
path: /datasets/attack_techniques/T1564.001/osquery_hidden_files/osquery.log
Loading