Commit Graph

5173 Commits

Author SHA1 Message Date
Atomic Red Team doc generator 297c6a48d1 Generated docs from job=generate-docs branch=master [ci skip] 2022-10-03 22:41:21 +00:00
tlor89 19ace944f7 T1055.004_Update (#2175)
* T1055.004_Update

* Update T1055.004.yaml

Co-authored-by: Toua Lor <tlor@nti.local>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-10-03 16:40:55 -06:00
Atomic Red Team doc generator 4eb79b9d8a Generated docs from job=generate-docs branch=master [ci skip] 2022-10-03 22:37:35 +00:00
tlor89 8c02a45145 T1048.002 (#2173)
* T1048.002

* Update T1048.002.yaml

Co-authored-by: Toua Lor <tlor@nti.local>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-10-03 16:36:57 -06:00
Atomic Red Team doc generator 52d1f72af2 Generated docs from job=generate-docs branch=master [ci skip] 2022-10-03 22:33:32 +00:00
frack113 f41e92b834 T1547.001 Fix test a70faea1-e206-4f6f-8d9a-67379be8f6f1 (#2171)
* Fix test a70faea1-e206-4f6f-8d9a-67379be8f6f1

* Restore b5c9a9bc-dda3-4ea0-b16a-add8e81ab75f

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-10-03 16:32:48 -06:00
Atomic Red Team doc generator 7e1529fbca Generated docs from job=generate-docs branch=master [ci skip] 2022-10-03 15:43:49 +00:00
Atomic Red Team GUID generator 5e91e948fc Generate GUIDs from job=generate-docs branch=master [skip ci] 2022-10-03 15:43:42 +00:00
sourabhsharmasourabh d081d1dc33 New Atomic test 29 - iwr download (#2172)
* New Atomic test 29 - iwr download

iwr or Invoke Web-Request download. Use 'iwr' or "Invoke-WebRequest" -URI argument to download a file from the web. Note: without -URI also works in some versions.

* Update T1105.yaml

* Update T1105.yaml

at 793 added line for elevation required : true, as it was missed to include earlier

* Update T1105.yaml

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-10-03 09:43:01 -06:00
ketumbra 457687dc9b Merge branch 'master' into 2080 2022-09-30 22:21:40 +01:00
ketumbra 52d550c2b3 check outfile exists first and use stat for size check
Co-authored-by: packetzero <20775507+packetzero@users.noreply.github.com>
2022-09-30 22:20:59 +01:00
ketumbra 53e53525a8 use named var and simplify exit 2022-09-30 21:42:53 +01:00
ketumbra 9f908989d7 use named vars
Co-authored-by: packetzero <20775507+packetzero@users.noreply.github.com>
2022-09-30 21:15:22 +01:00
ketumbra 34ff8e44d0 use named vars
Co-authored-by: packetzero <20775507+packetzero@users.noreply.github.com>
2022-09-30 21:15:11 +01:00
Atomic Red Team doc generator 9e5b12c491 Generated docs from job=generate-docs branch=master [ci skip] 2022-09-30 17:12:19 +00:00
Atomic Red Team GUID generator 0186f8aba8 Generate GUIDs from job=generate-docs branch=master [skip ci] 2022-09-30 17:12:13 +00:00
Narasimha2218 a0f872e11a UltraVNC Execution -New atomictest (#2169)
* UltraVNC Execution -New atomictest

 An adversary may attempt to trick the user into downloading UltraVNC for use as a C2 channel.
 Upon successful execution, UltraVNC will be executed

* typo fix

* remove space

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-09-30 11:11:44 -06:00
Atomic Red Team doc generator 09b7ade645 Generated docs from job=generate-docs branch=master [ci skip] 2022-09-29 17:15:18 +00:00
Atomic Red Team GUID generator 5d77f4da7e Generate GUIDs from job=generate-docs branch=master [skip ci] 2022-09-29 17:15:10 +00:00
Carrie Roberts 68633fc0e2 Set Custom AddToHistoryHandler to Avoid History File Logging (#2168)
Co-authored-by: Michael Haag <5632822+MHaggis@users.noreply.github.com>
2022-09-29 11:14:32 -06:00
Atomic Red Team doc generator 1cf4dd51f8 Generated docs from job=generate-docs branch=master [ci skip] 2022-09-27 23:39:17 +00:00
tlor89 0928ea6baa T1546.009 (#2167)
Co-authored-by: Toua Lor <tlor@nti.local>
2022-09-27 17:38:44 -06:00
Atomic Red Team doc generator 6586dc3be0 Generated docs from job=generate-docs branch=master [ci skip] 2022-09-27 15:14:14 +00:00
frack113 29d88cdb48 T1072 Fix GetPrereqs (#2164)
* Small Fix

* Remove cleanup

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-09-27 09:13:36 -06:00
Jose Enrique Hernandez a1959b4c2b Merge branch 'master' into 2080 2022-09-27 10:13:44 -04:00
Atomic Red Team doc generator 9bdd7fceba Generated docs from job=generate-docs branch=master [ci skip] 2022-09-26 17:59:20 +00:00
frack113 5b7eb3fe8b Fix download dependencies (#2165)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-09-26 11:58:46 -06:00
Atomic Red Team doc generator b07c165d9e Generated docs from job=generate-docs branch=master [ci skip] 2022-09-26 17:51:03 +00:00
Atomic Red Team GUID generator ff75bdc167 Generate GUIDs from job=generate-docs branch=master [skip ci] 2022-09-26 17:50:55 +00:00
Thomas de Brelaz c0c31e4c0c T1547.001 runkeys (#2150)
* added tests 10-15 to T1547.001.yaml covering various missing keys used for run persistence

 Committer: Thomas De Brelaz <thockoro@hotmail.com>

* fixed name for test 14

 Committer: Thomas De Brelaz <thockoro@hotmail.com>

* added missing HKLM test for explorer run key

 Committer: Thomas De Brelaz <thockoro@hotmail.com>

* readability improvements

* fixed readability issues

 Committer: Thomas De Brelaz <thockoro@hotmail.com>

* small ymal type fix

 Committer: Thomas De Brelaz <thockoro@hotmail.com>

Co-authored-by: Thomas De Brelaz <thomas.de-brelaz@ubisoft.com>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-09-26 11:50:21 -06:00
Atomic Red Team doc generator 09bc35dea1 Generated docs from job=generate-docs branch=master [ci skip] 2022-09-26 17:40:43 +00:00
Carrie Roberts 869f7e880d mimi prereq fixes (#2163)
* mimi prereq fixes

* fix url to helper
2022-09-26 11:40:00 -06:00
Atomic Red Team doc generator d0dad62dbc Generated docs from job=generate-docs branch=master [ci skip] 2022-09-23 22:57:18 +00:00
Atomic Red Team doc generator de803e9e53 Generated docs from job=generate-docs branch=master [ci skip] 2022-09-23 18:16:10 +00:00
Carrie Roberts 24530e138f Netsh helper dll persistance (#2159)
* default to no reboot

* add dll and improve atomic

* Update T1546.002.yaml

Co-authored-by: Michael Haag <5632822+MHaggis@users.noreply.github.com>
2022-09-23 12:15:27 -06:00
Atomic Red Team doc generator d6db2e9e07 Generated docs from job=generate-docs branch=master [ci skip] 2022-09-23 18:14:09 +00:00
Carrie Roberts 62cda00d61 default to no reboot (#2156)
Co-authored-by: Michael Haag <5632822+MHaggis@users.noreply.github.com>
2022-09-23 12:13:28 -06:00
Atomic Red Team doc generator cb79101125 Generated docs from job=generate-docs branch=master [ci skip] 2022-09-23 18:12:19 +00:00
Atomic Red Team GUID generator 680263d922 Generate GUIDs from job=generate-docs branch=master [skip ci] 2022-09-23 18:12:14 +00:00
Carrie Roberts 02ba14fd56 correct file extension (#2161) 2022-09-23 12:11:47 -06:00
Zeta e18e6da264 Fix Name and format (#2151)
* Fix Format

* Fix Format T1592.001

* keep guid

must keep the same guid for the test. display name comes from MITRE ATT&CK

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-09-23 11:43:51 -06:00
Atomic Red Team doc generator dac55eca04 Generated docs from job=generate-docs branch=master [ci skip] 2022-09-23 17:30:46 +00:00
tlor89 f24823b04f T1053.005_update (#2155)
* T1053.005_update

* Update T1053.005.yaml

Co-authored-by: Toua Lor <tlor@nti.local>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-09-23 11:30:15 -06:00
ketumbra 6667dbd2c4 Merge branch 'master' into 2080 2022-09-23 09:35:05 +01:00
Atomic Red Team doc generator c03a9e0299 Generated docs from job=generate-docs branch=master [ci skip] 2022-09-23 01:57:22 +00:00
tlor89 99a21b04d4 T1546.003 (#2158)
Co-authored-by: Toua Lor <tlor@nti.local>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-09-22 19:56:45 -06:00
Atomic Red Team doc generator 5ea7cb3010 Generated docs from job=generate-docs branch=master [ci skip] 2022-09-22 22:37:42 +00:00
tlor89 308634b0ec T1016 (#2157)
Co-authored-by: Toua Lor <tlor@nti.local>
2022-09-22 16:37:14 -06:00
ketumbra e87ccbae20 Merge branch 'master' into 2080 2022-09-22 22:05:57 +01:00
Chris Heald cb98e12fa0 fixes 2022-09-22 21:58:16 +01:00