From 966bf4b50ddfe904eaeaac520f85f94dde9f7b65 Mon Sep 17 00:00:00 2001 From: Atomic Red Team GUID generator Date: Mon, 4 Dec 2023 18:35:11 +0000 Subject: [PATCH] Generate GUIDs from job=generate-docs branch=master [skip ci] --- atomics/T1555.003/T1555.003.yaml | 1 + atomics/used_guids.txt | 1 + 2 files changed, 2 insertions(+) diff --git a/atomics/T1555.003/T1555.003.yaml b/atomics/T1555.003/T1555.003.yaml index 2cb57a5e..907c70db 100644 --- a/atomics/T1555.003/T1555.003.yaml +++ b/atomics/T1555.003/T1555.003.yaml @@ -468,6 +468,7 @@ atomic_tests: Remove-Item "PathToAtomicsFolder\..\ExternalPayloads\Login Data" > $null name: powershell - name: Dump Chrome Login Data with esentutl + auto_generated_guid: 70422253-8198-4019-b617-6be401b49fce description: | This test simulates an adversary using esentutl to dump encrypted credentials from Google Chrome's Login database. [Reference](https://actzero.ai/resources/blog/hygiene-tip-shut-down-attackers-harvesting-cached-browser-credentials/) diff --git a/atomics/used_guids.txt b/atomics/used_guids.txt index b478b326..18996e52 100644 --- a/atomics/used_guids.txt +++ b/atomics/used_guids.txt @@ -1522,3 +1522,4 @@ a0c1725f-abcd-40d6-baac-020f3cf94ecd 2a3c7035-d14f-467a-af94-933e49fe6786 ae56083f-28d0-417d-84da-df4242da1f7c ffeddced-bb9f-49c6-97f0-3d07a509bf94 +70422253-8198-4019-b617-6be401b49fce