diff --git a/atomics/Indexes/index.yaml b/atomics/Indexes/index.yaml index de4f0749..07cd63ca 100644 --- a/atomics/Indexes/index.yaml +++ b/atomics/Indexes/index.yaml @@ -16571,6 +16571,7 @@ credential-access: prereq_command: 'if (Test-Path #{file_path}\SysInternals) {exit 0} else {exit 1}' get_prereq_command: |- + [Net.ServicePointManager]::SecurityProtocol = [Net.SecurityProtocolType]::Tls12 Invoke-WebRequest "https://github.com/mitre-attack/attack-arsenal/raw/66650cebd33b9a1e180f7b31261da1789cdceb66/adversary_emulation/APT29/CALDERA_DIY/evals/payloads/Modified-SysInternalsSuite.zip" -OutFile "#{file_path}\Modified-SysInternalsSuite.zip" Expand-Archive #{file_path}\Modified-SysInternalsSuite.zip #{file_path}\sysinternals -Force Remove-Item #{file_path}\Modified-SysInternalsSuite.zip -Force diff --git a/atomics/T1555.003/T1555.003.md b/atomics/T1555.003/T1555.003.md index a0e41fce..1906c05a 100644 --- a/atomics/T1555.003/T1555.003.md +++ b/atomics/T1555.003/T1555.003.md @@ -60,6 +60,7 @@ if (Test-Path #{file_path}\SysInternals) {exit 0} else {exit 1} ``` ##### Get Prereq Commands: ```powershell +[Net.ServicePointManager]::SecurityProtocol = [Net.SecurityProtocolType]::Tls12 Invoke-WebRequest "https://github.com/mitre-attack/attack-arsenal/raw/66650cebd33b9a1e180f7b31261da1789cdceb66/adversary_emulation/APT29/CALDERA_DIY/evals/payloads/Modified-SysInternalsSuite.zip" -OutFile "#{file_path}\Modified-SysInternalsSuite.zip" Expand-Archive #{file_path}\Modified-SysInternalsSuite.zip #{file_path}\sysinternals -Force Remove-Item #{file_path}\Modified-SysInternalsSuite.zip -Force