Files
splunk-security_content/lookups/browser_app_list.yml
2025-03-26 13:03:42 -05:00

13 lines
377 B
YAML

name: browser_app_list
date: 2024-12-23
version: 2
id: a80ccd19-e46f-4a12-9ad7-e653ad646347
author: Splunk Threat Research Team
lookup_type: csv
description: A list of known browser application being targeted for credential extraction.
default_match: false
match_type:
- WILDCARD(browser_process_name)
- WILDCARD(browser_object_path)
min_matches: 1
case_sensitive_match: false