Commit Graph

5173 Commits

Author SHA1 Message Date
Atomic Red Team doc generator 16d170955c Generated docs from job=generate-docs branch=master [ci skip] 2025-01-17 21:20:31 +00:00
Tony M Lambert 546946b08b New T1539 Test for Chrome ABE Bypass via Remote Debugging (#3036) 2025-01-17 16:19:30 -05:00
Atomic Red Team doc generator 059c77f008 Generated docs from job=generate-docs branch=master [ci skip] 2025-01-16 00:41:19 +00:00
Atomic Red Team doc generator 7658865ae1 Generated docs from job=generate-docs branch=master [ci skip] 2025-01-12 22:43:13 +00:00
ryananicholson b1aba20ca4 feat: Added T1595.003 (#3027)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2025-01-12 17:42:16 -05:00
Atomic Red Team doc generator 908abd7bf6 Generated docs from job=generate-docs branch=master [ci skip] 2025-01-12 22:31:02 +00:00
Badoodish 1790286330 Added two new tests to T1614.001 (#3019)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2025-01-12 17:30:04 -05:00
Atomic Red Team doc generator ccd6146de1 Generated docs from job=generate-docs branch=master [ci skip] 2025-01-07 20:35:45 +00:00
SanSan-monkey 8d13023cc6 New Atomic TestT1547.001.yaml (#3025)
Co-authored-by: Bhavin Patel <bhavin.j.patel91@gmail.com>
2025-01-07 12:34:41 -08:00
Atomic Red Team doc generator 6d5f38ebeb Generated docs from job=generate-docs branch=master [ci skip] 2025-01-03 22:28:45 +00:00
ryananicholson 8bf0d8dd69 feat: T1526 discovery (AWS and Azure) (#3023)
Co-authored-by: Bhavin Patel <bhavin.j.patel91@gmail.com>
2025-01-03 14:27:52 -08:00
Atomic Red Team doc generator bfcfd561ea Generated docs from job=generate-docs branch=master [ci skip] 2024-12-19 00:43:51 +00:00
lazarg 89ad31cce4 Update T1124.yaml (#3016)
Co-authored-by: Bhavin Patel <bhavin.j.patel91@gmail.com>
2024-12-18 16:42:42 -08:00
Atomic Red Team doc generator 1f3c2b9c9d Generated docs from job=generate-docs branch=master [ci skip] 2024-12-19 00:41:04 +00:00
lazarg 2d9087901d Update T1082.yaml (#3015)
Co-authored-by: Bhavin Patel <bhavin.j.patel91@gmail.com>
2024-12-18 16:39:58 -08:00
Atomic Red Team doc generator f477866de4 Generated docs from job=generate-docs branch=master [ci skip] 2024-12-18 16:53:07 +00:00
Retrospected f308db7af9 Fix T1547.001 test b051b3c0-66e7-4a81-916d-e6383bd3a669 by adding /f argument to the reg modification by reg.exe (#3017)
Co-authored-by: Bhavin Patel <bhavin.j.patel91@gmail.com>
2024-12-18 08:52:10 -08:00
Atomic Red Team doc generator f6b46af2f4 Generated docs from job=generate-docs branch=master [ci skip] 2024-12-18 07:26:07 +00:00
ryananicholson 11c88b9835 feat: more cloud credential discovery (#3018) 2024-12-17 23:25:10 -08:00
Atomic Red Team doc generator dda49722d7 Generated docs from job=generate-docs branch=master [ci skip] 2024-12-11 18:35:39 +00:00
za 6cb8a46876 Fix typo on T1098.md (#2993) 2024-12-11 11:34:41 -07:00
Atomic Red Team doc generator 98513ccc8f Generated docs from job=generate-docs branch=master [ci skip] 2024-12-11 01:04:51 +00:00
Nasreddine Bencherchali dd77eab456 Autlogger Tampering Atomics (#3014)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-12-10 18:03:46 -07:00
Atomic Red Team doc generator b138e9a2e7 Generated docs from job=generate-docs branch=master [ci skip] 2024-12-11 01:02:29 +00:00
Nasreddine Bencherchali 8a2891aa01 COMPlus_ETWEnabled Atomics (#3010)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-12-10 18:01:25 -07:00
Atomic Red Team doc generator 51d195d066 Generated docs from job=generate-docs branch=master [ci skip] 2024-12-11 00:57:19 +00:00
joaovarelas 998b8ff722 fix T1001.002-1 powershell gen passwords (#3007)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-12-10 17:56:27 -07:00
Atomic Red Team doc generator 666c877ffc Generated docs from job=generate-docs branch=master [ci skip] 2024-12-11 00:54:14 +00:00
AJ King 6efef030bf Update broken uBlockLite URL (#2999)
Co-authored-by: Hare Sudhan <code@0x6c.dev>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-12-10 17:53:20 -07:00
Atomic Red Team doc generator 01e281aad2 Generated docs from job=generate-docs branch=master [ci skip] 2024-12-11 00:47:02 +00:00
Nasreddine Bencherchali c800c57aab SDDL Tampering Atomics (#3006)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-12-10 17:46:01 -07:00
Atomic Red Team doc generator 24d1919fdf Generated docs from job=generate-docs branch=master [ci skip] 2024-12-11 00:37:58 +00:00
Kien Do 78a9b8296e Update T1486.yaml (#3005)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-12-10 17:36:53 -07:00
Atomic Red Team doc generator 0e512a6fc1 Generated docs from job=generate-docs branch=master [ci skip] 2024-12-10 23:59:59 +00:00
Nathan 4ea1e37fc1 Expand ESXi-focused Tests (#3004)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-12-10 16:59:07 -07:00
Atomic Red Team doc generator 41884501a7 Generated docs from job=generate-docs branch=master [ci skip] 2024-12-10 23:06:16 +00:00
Burak Karaduman ddaf498575 New Atomic - Clear PowerShell Session History (#3011)
Co-authored-by: Hare Sudhan <code@0x6c.dev>
2024-12-10 18:05:24 -05:00
Atomic Red Team doc generator 099182372e Generated docs from job=generate-docs branch=master [ci skip] 2024-12-03 04:24:33 +00:00
Burak Karaduman 3675235b4a New Atomic - Exfiltrate Data using DNS Queries via dig (#2994)
Co-authored-by: Hare Sudhan <code@0x6c.dev>
2024-12-02 23:23:42 -05:00
Atomic Red Team doc generator 517da55ea7 Generated docs from job=generate-docs branch=master [ci skip] 2024-11-20 21:13:28 +00:00
Burak Karaduman 7e90223bf7 New Atomic - Privilege Escalation via Docker Volume Mapping (#2992)
* New Atomic - Privilege Escalation via Docker Volume Mapping

* Rearranged keys

---------

Co-authored-by: Bhavin Patel <bhavin.j.patel91@gmail.com>
2024-11-20 13:12:35 -08:00
Atomic Red Team doc generator 5eb9040c3c Generated docs from job=generate-docs branch=master [ci skip] 2024-11-20 20:22:26 +00:00
Kien Do ac78f1f902 Update T1078.004.yaml (#2991)
Update cleanup section
2024-11-20 12:21:22 -08:00
Atomic Red Team doc generator 7614a1937a Generated docs from job=generate-docs branch=master [ci skip] 2024-11-20 03:12:06 +00:00
Kien Do f2c4afb9e1 Update T1078.004.yaml (#2982)
* Update T1078.004.md

Added comment noting that this T1078.004-2 will only work if the Azure account (that the command is trying to login with) does not have 2FA enabled.

* Update T1078.004.md

* Update T1078.004.yaml

Update T1078.004-2 so that core functionalities work again (regular execution, -GetPrereqs, and -CleanUp)

* Revert T1078.004.md changes

* Update terraform.tfvars

Hardcoded Azure values.

* Update T1078.004.yaml

Hardcoded test 2's values to match `./atomics/T1078.004/src/T1078.004-2/terraform.tfvars`

* Update terraform.tfvars

* Update T1078.004.yaml

---------

Co-authored-by: Bhavin Patel <bhavin.j.patel91@gmail.com>
2024-11-19 19:11:07 -08:00
Atomic Red Team doc generator 501dd6c05e Generated docs from job=generate-docs branch=master [ci skip] 2024-11-20 01:35:37 +00:00
Atomic Red Team doc generator e1c3f63bf9 Generated docs from job=generate-docs branch=master [ci skip] 2024-11-20 00:06:48 +00:00
Matt Anderson c7d7cc8203 Add tests to T1222 (#2980)
* Add tests to T1222

* Update T1222.yaml

Remove Auto-gen GUIDs

* Update T1222.yaml

Fixed executor name for test 3 and removed colons in reg path causing errors in test 2.

---------

Co-authored-by: Bhavin Patel <bhavin.j.patel91@gmail.com>
2024-11-19 16:05:49 -08:00
Atomic Red Team doc generator f30d6050ca Generated docs from job=generate-docs branch=master [ci skip] 2024-11-19 18:17:02 +00:00
Burak Karaduman 33ca146f03 T1105 - Windows pull file using sftp.exe (#2987)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-11-19 13:16:05 -05:00