Skip to content

Add DirtyFrag custom auditd attack data#1182

Open
Axselll wants to merge 2 commits into
splunk:masterfrom
Axselll:master
Open

Add DirtyFrag custom auditd attack data#1182
Axselll wants to merge 2 commits into
splunk:masterfrom
Axselll:master

Conversation

@Axselll

@Axselll Axselll commented Jun 11, 2026

Copy link
Copy Markdown

a custom attack data related to DirtyFrag tested on my environment

@ljstella

Copy link
Copy Markdown
Contributor

@Axselll Hey, thanks for the contribution! Can you make sure you have git-lfs installed and configured?

@Axselll

Axselll commented Jun 11, 2026

Copy link
Copy Markdown
Author

@Axselll Hey, thanks for the contribution! Can you make sure you have git-lfs installed and configured?

I think i don't have git-lfs on my local machine, should i re-submit the attack data via git-lfs ?

@Axselll

Axselll commented Jun 12, 2026

Copy link
Copy Markdown
Author

Hello @ljstella. I have installed and configured git-lfs, also push an update. Thanks

@Axselll Axselll changed the title Add DirtyFrag custom auditd dttack data Add DirtyFrag custom auditd attack data Jun 12, 2026
@nasbench

Copy link
Copy Markdown
Contributor

@Axselll you will also have to include a new entry in the yaml file itself. datasets/attack_techniques/T1068/linux_dirtyfrag/linux_dirtyfrag.yml in the dataset section.

Also take a look at the actual PR i left some comments, once those are addressed we can proceed to merging/discarding this if needed.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants