Atomic Red Team doc generator
9f6a1eab36
Generated docs from job=generate-docs branch=master [ci skip]
2026-02-18 16:55:45 +00:00
Atomic Red Team doc generator
376bf2a64d
Generated docs from job=generate-docs branch=master [ci skip]
2026-02-18 16:46:29 +00:00
Atomic Red Team doc generator
5ede8f21e4
Generated docs from job=generate-docs branch=master [ci skip]
2025-02-13 22:03:40 +00:00
Atomic Red Team doc generator
d10a13eb17
Generated docs from job=generate-docs branch=master [ci skip]
2025-01-28 05:03:31 +00:00
Hare Sudhan
bfdd702717
Remove unused variable ( #3040 )
2025-01-28 00:02:41 -05:00
Atomic Red Team doc generator
f6b46af2f4
Generated docs from job=generate-docs branch=master [ci skip]
2024-12-18 07:26:07 +00:00
ryananicholson
11c88b9835
feat: more cloud credential discovery ( #3018 )
2024-12-17 23:25:10 -08:00
Atomic Red Team doc generator
fd2d2a148d
Generated docs from job=generate-docs branch=master [ci skip]
2024-07-12 14:59:56 +00:00
abhijose09
7c51b76bcd
Update T1552.001.yaml ( #2842 )
...
* Update T1552.001.yaml
New Test Added : List Credential Files via PowerShell
* Update T1552.001.yaml
Added Test List Credential Files via PowerShell , List Credential Files via Command Prompt
* Updated command lines
Updated command lines
2024-07-12 09:58:48 -05:00
Atomic Red Team doc generator
f64434da24
Generated docs from job=generate-docs branch=master [ci skip]
2024-04-27 17:50:49 +00:00
Atomic Red Team doc generator
ad2d7c8f13
Generated docs from job=generate-docs branch=master [ci skip]
2023-11-06 22:42:54 +00:00
Hare Sudhan
62a85c12b5
FreeBSD changes ( #2585 )
...
* freebsd changes
* renaming freebsd to linux
2023-11-06 17:41:43 -05:00
Atomic Red Team doc generator
4d6c4e8e23
Generated docs from job=generate-docs branch=master [ci skip]
2023-11-02 00:56:51 +00:00
Alonso Cárdenas
86913f3573
Merge branch 'master' of https://github.com/alonsobsd/atomic-red-team
2023-06-01 22:03:39 -05:00
Atomic Red Team doc generator
b1f3c968f2
Generated docs from job=generate-docs branch=master [ci skip]
2023-05-19 17:06:33 +00:00
Josh Rickard
284886292b
Atomic Red Team - JSON Schema Validation CI ( #2303 )
...
* feat: Adding atomic-red-team JSON Schema defintions
* feat: Adding validate.py script to validate all atomics against the defined schema
* feat: Adding validate-schema GitHub Workflow action to validate on every push to the repo
* ci: Updated the validate-schema workflow to support and use Ruby instead of python
* fix: Updated schema to remove schema draft version (not necessarily needed) and update to remove elevation_required as a required defined property
* fix: Removed the yaml schema version
* docs: Adding start of README
* fix: Adding an updated/better version of the python validation but may ultimately be removed
* feat: Adding Ruby version of validate.rb script
* fix: Removing files not needed since we are changing to github action and using the new validation code
* fix: Adding the yaml schema file back and removed the json version
* docs: Updated README with documentation
* fix: Updating schema to use new format validator
* fix: Updated validate.rb to verify that the Technique IDs are in the correct format.
* fix: Upating validate.rb to raise execptions so that failures flow up to the GitHub Action workflow
* fix: Updated all tests that have input_arguments not conformaing to schema defintion for type value of path
* fix: Updating the Validaton README for typos
* fixL: Minor updates to the schema
* minor schema changes
* github actions fix
* schema changes
---------
Co-authored-by: MSAdministrator <MSAdministrator@users.noreply.github.com >
Co-authored-by: Carrie Roberts <clr2of8@gmail.com >
Co-authored-by: Hare Sudhan <code@0x6c.dev >
2023-05-12 15:33:47 -06:00
Alonso Cárdenas
baf012d844
Fix conflicts
2023-05-09 13:00:05 -05:00
Alonso Cárdenas
896859a15f
Fix conflicts
2023-05-09 12:57:04 -05:00
Alonso Cárdenas
8b8a25368c
- Fix conflicts
2023-05-09 12:55:50 -05:00
Alonso Cárdenas
aad4f9e1fb
- Fix conflicts
2023-05-09 12:46:06 -05:00
amalone-scwx
e6390f6417
minor cleanup to dependencies and exit codes ( #2415 )
2023-05-09 10:26:45 -06:00
Alonso Cárdenas
f1c5a9be03
Add FreeBSD support
2023-05-08 11:06:08 -05:00
Atomic Red Team doc generator
2b44edfaa7
Generated docs from job=generate-docs branch=master [ci skip]
2023-04-13 22:32:40 +00:00
Jose Enrique Hernandez
fdcca49a52
T1552.001.yaml
2023-04-12 19:18:07 -04:00
Atomic Red Team doc generator
16594d72c5
Generated docs from job=generate-docs branch=master [ci skip]
2023-02-13 23:11:19 +00:00
Josh Rickard
a5dd0813cd
fix: Updating atomics YAML file structure to align with the new JSON schema definition ( #2323 )
...
* fix: Updating atomics YAML file structure to align with the new JSON schema definition.
This also fixes some white space issues and general line formatting across all impacted atomics.
* fix: One additional change needed
---------
Co-authored-by: MSAdministrator <MSAdministrator@users.noreply.github.com >
Co-authored-by: Carrie Roberts <clr2of8@gmail.com >
2023-02-13 16:10:37 -07:00
Atomic Red Team doc generator
d0dad62dbc
Generated docs from job=generate-docs branch=master [ci skip]
2022-09-23 22:57:18 +00:00
Atomic Red Team doc generator
f339e7da7d
Generated docs from job=generate-docs branch=master [ci skip]
2022-07-07 05:28:42 +00:00
Dan
d1c108053b
Update T1552.001-3 ( #2028 )
...
Update T1552.001 Test 3 to silently continue when errors occur
2022-07-06 23:28:12 -06:00
Atomic Red Team doc generator
175a6c3311
Generated docs from job=generate-docs branch=master [ci skip]
2022-05-12 23:38:30 +00:00
Atomic Red Team GUID generator
efac21e57a
Generate GUIDs from job=generate-docs branch=master [skip ci]
2022-05-12 23:38:24 +00:00
tlor89
f6f45a0030
Update T1552.001.yaml ( #1954 )
...
Loot local Credentials - AWS, Microsoft Azure, and Google Compute credentials technique via function of WinPwn
Co-authored-by: Carrie Roberts <clr2of8@gmail.com >
2022-05-12 17:37:55 -06:00
Atomic Red Team doc generator
1ef5d7a51d
Generated docs from job=generate-docs branch=master [ci skip]
2022-05-07 02:01:48 +00:00
Atomic Red Team GUID generator
b44d40505b
Generate GUIDs from job=generate-docs branch=master [skip ci]
2022-05-07 02:01:42 +00:00
dwhite9
9e991e368b
Adding Credential Discovery Atomics sourced from WinPwn Script ( #1929 )
...
**Details:**
https://github.com/S3cur3Th1sSh1t/WinPwn/
**Testing:**
Tested on Windows 10 VM
Co-authored-by: Daniel White <d0w019h@homeoffice.wal-mart.com >
2022-05-06 20:01:08 -06:00
Madhav Bhatt
00801350e5
T1078 004 cloud accounts gcp service accounts ( #1734 )
...
* Adding Tests for creation and modification of systemd service
* Update T0137.004.md Markdown to Match T1037.004.yaml
* Adding Atomic Test for Finding and Accessing Unsecured Github Credentials along with Updated Markdown Version T1552.001.md
* Adding Checks whether OS is Ubuntu, CentOS OR Kali
* T1110.004 : Credential Stuffing From Linux & macOS
* T1110.004 : Credential Stuffing From Linux & macOS
* T1110.004 : Credential Stuffing From Linux & macOS
* Fetch Upstream
* Fetch From Upstream
* Fetch From Upstream
* Atomic Test For GCP Service Account
* Atomic Test For GCP Service Account
* Adding CleanUp Commands
* Typo in YAML file
* Google Cloud Shell to Google-Workspace
* changing upper case to lower case
* modified executor and dependecy name
* Adding missing tests from master
* Typo
Co-authored-by: Madhav Bhatt <madhavbhatt@kali.local >
Co-authored-by: Carrie Roberts <clr2of8@gmail.com >
2022-01-21 11:36:27 -07:00
CircleCI Atomic Red Team doc generator
36d49de4c8
Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci]
2021-06-24 17:04:33 +00:00
CircleCI Atomic Red Team doc generator
575b36a8e6
Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci]
2021-06-24 15:16:54 +00:00
CircleCI Atomic Red Team GUID generator
ecaa041b50
Generate GUIDs from job=generate_and_commit_guids_and_docs branch=master [skip ci]
2021-06-04 17:23:39 +00:00
madhavbhatt
3f7ee8151e
T1552.001 : Find and Access Unsecured Github Credentials in File
2021-06-01 20:39:26 -07:00
madhavbhatt
ae62a04ded
T1552.001 : Find and Access Unsecured Github Credentials in File
2021-06-01 20:12:17 -07:00
CircleCI Atomic Red Team doc generator
507e5b8716
Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci]
2021-05-21 20:26:14 +00:00
CircleCI Atomic Red Team doc generator
910a2a764a
Generate docs from job=validate_atomics_generate_docs branch=master
2020-09-29 13:53:28 +00:00
CircleCI Atomic Red Team doc generator
8a82e9b66a
Generate docs from job=validate_atomics_generate_docs branch=master
2020-06-18 01:57:35 +00:00
hypnoticpattern
83dce0dcfa
Fix macOS tests ( #1059 )
...
* Fix macOS tests
* Fix typo in T1574.006
* Replaced zsh with bash, add prereq_command
* Fix test name in T1053.004
Co-authored-by: Carrie Roberts <clr2of8@gmail.com >
2020-06-17 19:57:14 -06:00
Carrie Roberts
24549e3866
Convert to Mitre ATT&CK sub-technique schema ( #1056 )
...
* Initial transfer of atomics to MITRE subtechniques
* Add GUIDs back in, attack_technique to string (#1019 )
* technique to string and add guids back in
* technique to string and add guids back in
* technique to string and add guids back in
* technique to string and add guids back in
* Subtechnique transfer T1220-T1546.005 (#1020 )
* Create T1222.001.yaml
* Create T1222.002.yaml
* Create T1505.002.yaml
* Update T1543.003.yaml
* Update AtomicService.cs
* Update T1546.005.yaml
* Delete T1222.yaml
* Update T1482.yaml
* Update T1485.yaml
* Update T1220.yaml
* Update T1489.yaml
* Update T1490.yaml
* Update T1496.yaml
* Update T1505.003.yaml
* Update T1505.yaml
* Update T1518.001.yaml
* Update T1518.yaml
* Update T1529.yaml
* Update T1543.004.yaml
* Update T1546.001.yaml
* Update T1546.002.yaml
* Update T1546.002.yaml
* Update T1546.001.yaml
* Update T1543.004.yaml
* Update T1543.002.yaml
* Update T1543.001.yaml
* Update T1518.001.yaml
* Update T1546.004.yaml
* Update T1546.003.yaml
* Update T1531.yaml
* Update T1222.001.yaml
* Update T1222.002.yaml
* Update T1505.002.yaml
* Update T1505.003.yaml
* Update T1518.001.yaml
* Update T1543.001.yaml
* Update T1546.005.yaml
* Update T1546.004.yaml
* Update T1546.003.yaml
* Update T1546.002.yaml
* Update T1546.001.yaml
* Update T1543.004.yaml
* Update T1543.003.yaml
* Update T1543.002.yaml
* added auto_generated_guid 1220
* added T1222.001 auto_generated_guid
* Update T1222.002.yaml
added auto_generated_guid entries
* Update T1482.yaml
auto_generated_guid added
* Update T1485.yaml
added auto_generated_guids
* Update T1489.yaml
added auto_generated_guids
* Update T1490.yaml
added auto_generated_guids
* Update T1496.yaml
added auto_generated_guid
* Update T1505.002.yaml
added auto_generated_guid from old T1505 same atomic
* Update T1505.003.yaml
added auto_generated_guid from previous atomic 1100
* Delete T1505.yaml
no longer needed, moved to 1505.002
* Update T1518.yaml
added auto_generated_guids
* Update T1529.yaml
added auto_generated_guids
* Update T1531.yaml
added auto_generated_guids
* Update T1543.001.yaml
added auto_generated_guid
* Update T1543.002.yaml
added auto_generated_guid
* Update T1543.004.yaml
added auto_generated_guid
* Update T1546.001.yaml
added auto_generated_guid
* Update T1546.002.yaml
added auto_generated_guid
* Update T1546.003.yaml
* Update T1546.004.yaml
added auto_generated_guid
* Update T1546.005.yaml
added auto_generated_guid
* add guids back in
* fix spacing issue
* fix spacing
* fix spacing
Co-authored-by: Carrie Roberts <clr2of8@gmail.com >
* Sub-techniques T1053-T1113 - Updates (#1022 )
* Sub-techniques T1053-T1113 - Updates
Updated techniques for sub-techniques.
* minor fixes
format fixing
* Added GUIDs
- Added GUIDs back
- Fixed typo (T1054)
- Fixed attack_technique from an array to a string
* Sub-technique updates T1546.008 through T1574.011 (#1024 )
* sub technique updates
* sub technique updates
* sub technique updates
* Carrie updates (#1017 )
* updated T1110,12,13
* updated T1114
* updated T1114
* updated T1115
* updated T1119
* updated T1123,24
* updated T1127
* updated T1114
* updated T1127
* updated T1132
* T1134.004
* T1134.004
* updated T1135
* updated T1136
* updated T1137
* updated T1140
* remove depracted T1153
* updated T1176
* updated T1197
* updated T1201
* updated T1202
* updated T1204
* updated T1207
* updated T1216
* updated T1204
* updated T1217
* updated T1218
* updated T1218
* updated T1219
* updated T1218
* attack_technique to string
* Subtechnique transfer (#1025 )
* T1003 review
* T1005 manual review changes
* T1027.002 sub-technique review
* T1027.004 sub-technique review
* T1036 sub-technique review
* T1037 sub-technique review
* T1048 sub-technique review
* YAML bugfixes
* Adding auto-generated GUIDs back to tests
* merging with Mike's PR
* Merging with Carrie's PR
* fix spacing
Co-authored-by: Carrie Roberts <clr2of8@gmail.com >
* Subtechnique fix (#1026 )
* add atomic_tests: element
* add atomic_tests: element
* more fixes
* more fixes
* more fixes
* sub technique minor fixes 1 (#1027 )
* fixes
* fixes
* more fixes
* more fixes
* display name fix (#1028 )
* remove some deprecated stuff. reorganize a little (#1031 )
* Gendocs fix (#1033 )
* gendocs updates for subtechniques
* add folders
* ignore auto generated markdown files
* remove tmp files
* add tmp files
* Generate docs from job=validate_atomics_generate_docs branch=subtechnique_transfer
* navigator layer v3.0
* Generate docs from job=validate_atomics_generate_docs branch=subtechnique_transfer
Co-authored-by: Matt Graeber <60448025+mgraeber-rc@users.noreply.github.com >
Co-authored-by: Tsora-Pop <35981510+Tsora-Pop@users.noreply.github.com >
Co-authored-by: Michael Haag <mike@redcanary.com >
Co-authored-by: CircleCI Atomic Red Team doc generator <email>
2020-06-17 12:55:46 -06:00