From 01926ea4d26d1abc87c5712984460fbfb5a7fd10 Mon Sep 17 00:00:00 2001 From: CircleCI Atomic Red Team GUID generator Date: Mon, 18 Apr 2022 16:54:23 +0000 Subject: [PATCH] Generate GUIDs from job=generate_and_commit_guids_and_docs branch=master [skip ci] --- atomics/T1039/T1039.yaml | 2 ++ atomics/used_guids.txt | 2 ++ 2 files changed, 4 insertions(+) diff --git a/atomics/T1039/T1039.yaml b/atomics/T1039/T1039.yaml index bb4cc09c..f712e13e 100644 --- a/atomics/T1039/T1039.yaml +++ b/atomics/T1039/T1039.yaml @@ -2,6 +2,7 @@ attack_technique: T1039 display_name: Data from Network Shared Drive atomic_tests: - name: Copy a sensitive File over Administive share with copy + auto_generated_guid: 6ed67921-1774-44ba-bac6-adb51ed60660 description: |- Copy from sensitive File from the c$ of another LAN computer with copy cmd https://twitter.com/SBousseaden/status/1211636381086339073 @@ -43,6 +44,7 @@ atomic_tests: name: command_prompt elevation_required: true - name: Copy a sensitive File over Administive share with Powershell + auto_generated_guid: 7762e120-5879-44ff-97f8-008b401b9a98 description: |- Copy from sensitive File from the c$ of another LAN computer with powershell https://twitter.com/SBousseaden/status/1211636381086339073 diff --git a/atomics/used_guids.txt b/atomics/used_guids.txt index 2f776ffd..7940bca3 100644 --- a/atomics/used_guids.txt +++ b/atomics/used_guids.txt @@ -965,3 +965,5 @@ ab09ec85-4955-4f9c-b8e0-6851baf4d47f 44a4bedf-ffe3-452e-bee4-6925ab125662 0976990f-53b1-4d3f-a185-6df5be429d3b edbcd8c9-3639-4844-afad-455c91e95a35 +6ed67921-1774-44ba-bac6-adb51ed60660 +7762e120-5879-44ff-97f8-008b401b9a98