diff --git a/atomics/T1654/T1654.yaml b/atomics/T1654/T1654.yaml index 250f7e9697..4c672a015c 100644 --- a/atomics/T1654/T1654.yaml +++ b/atomics/T1654/T1654.yaml @@ -18,6 +18,7 @@ atomic_tests: name: powershell elevation_required: true - name: Enumerate Windows Security Log via WevtUtil + auto_generated_guid: fef0ace1-3550-4bf1-a075-9fea55a778dd description: |- WevtUtil is a command line tool that can be utilised by adversaries to gather intelligence on a targeted Windows system's logging infrastructure. diff --git a/atomics/used_guids.txt b/atomics/used_guids.txt index c2bd284c0e..a01fb1e73e 100644 --- a/atomics/used_guids.txt +++ b/atomics/used_guids.txt @@ -1567,3 +1567,4 @@ ed6c2c87-bba6-4a28-ac6e-c8af3d6c2ab5 2d5029f0-ae20-446f-8811-e7511b58e8b6 36c62584-d360-41d6-886f-d194654be7c2 bac8a340-be64-4491-a0cc-0985cb227f5a +fef0ace1-3550-4bf1-a075-9fea55a778dd