Commit Graph

5173 Commits

Author SHA1 Message Date
Atomic Red Team doc generator 12bf341353 Generated docs from job=generate-docs branch=master [ci skip] 2024-11-19 18:10:36 +00:00
Burak Karaduman 0c76b2cad3 T1105 - Windows push file using sftp.exe (#2986)
* T1105 - Windows push file using sftp.exe

* Update T1105.yaml

---------

Co-authored-by: Hare Sudhan <code@0x6c.dev>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-11-19 13:09:36 -05:00
Atomic Red Team doc generator d1430f6cb8 Generated docs from job=generate-docs branch=master [ci skip] 2024-11-19 18:04:20 +00:00
Burak Karaduman 35b0abe836 T1105 - Windows pull file using scp.exe (#2985)
* T1105 - Windows pull file using scp.exe

* Update T1105.yaml

---------

Co-authored-by: Hare Sudhan <code@0x6c.dev>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-11-19 13:03:15 -05:00
Atomic Red Team doc generator 012a309879 Generated docs from job=generate-docs branch=master [ci skip] 2024-11-19 04:10:36 +00:00
Hare Sudhan 92f492c4d4 fix T1555 (#2989) 2024-11-18 20:09:43 -08:00
Atomic Red Team doc generator 2933afff6a Generated docs from job=generate-docs branch=master [ci skip] 2024-11-15 20:21:04 +00:00
Biagio Dipalma c6094b439c remove extra line (#2984)
Co-authored-by: Bhavin Patel <bhavin.j.patel91@gmail.com>
2024-11-15 12:20:12 -08:00
Atomic Red Team doc generator fb37dd4a03 Generated docs from job=generate-docs branch=master [ci skip] 2024-11-15 19:53:56 +00:00
Burak Karaduman 11648ff2bd T1105 - Windows push file using scp.exe (#2983)
* T1105 - Windows push file using scp.exe

* Improvments for "Windows push file using scp.exe"

* Update T1105.yaml

---------

Co-authored-by: Bhavin Patel <bhavin.j.patel91@gmail.com>
2024-11-15 11:52:51 -08:00
Atomic Red Team doc generator 7e167eed39 Generated docs from job=generate-docs branch=master [ci skip] 2024-11-15 19:47:03 +00:00
Michael Haag a4f082e118 RunMRU Atomic Test (#2981)
Co-authored-by: Bhavin Patel <bhavin.j.patel91@gmail.com>
2024-11-15 11:46:11 -08:00
Atomic Red Team doc generator c78bb85e87 Generated docs from job=generate-docs branch=master [ci skip] 2024-11-15 19:39:54 +00:00
Kevin e207ab6ff1 Move a T1036.003 test to T1036.007 (#2974)
Signed-off-by: Kevin <kevin@stealsyour.pw>
Co-authored-by: Bhavin Patel <bhavin.j.patel91@gmail.com>
2024-11-15 11:38:36 -08:00
Atomic Red Team doc generator 61c3a1408c Generated docs from job=generate-docs branch=master [ci skip] 2024-11-13 03:18:26 +00:00
Burak Karaduman 99915c63be Get Printer Device List via PowerShell Command (#2973) 2024-11-12 22:17:31 -05:00
Atomic Red Team doc generator 5d5915abe2 Generated docs from job=generate-docs branch=master [ci skip] 2024-11-12 01:44:35 +00:00
Biagio Dipalma ff52ae4683 improve suite (#2964)
Co-authored-by: Hare Sudhan <code@0x6c.dev>
2024-11-11 20:43:41 -05:00
Atomic Red Team doc generator 25e3c3956c Generated docs from job=generate-docs branch=master [ci skip] 2024-11-05 21:12:26 +00:00
Burak Karaduman 67f47a078c New atomic added. (#2970)
* New atomic added.

* Update T1082.yaml

---------

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-11-05 16:11:26 -05:00
Atomic Red Team doc generator bb351c1480 Generated docs from job=generate-docs branch=master [ci skip] 2024-11-05 21:03:53 +00:00
Burak Karaduman aa542159ab Added new atomic. (#2969)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-11-05 16:03:00 -05:00
Atomic Red Team doc generator 84a8d03003 Generated docs from job=generate-docs branch=master [ci skip] 2024-11-05 21:01:27 +00:00
Ahmed Farouk 868da3b839 Added Paste and Run Technique (#2966)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-11-05 16:00:28 -05:00
Atomic Red Team doc generator f3ee3b833f Generated docs from job=generate-docs branch=master [ci skip] 2024-11-05 19:56:41 +00:00
Biagio Dipalma 26fbca688f Improve T1090.001 (#2963)
* Improve test

* improvements

* handle error correctly

* remove escalation_required

* update test

---------

Co-authored-by: Hare Sudhan <code@0x6c.dev>
2024-11-05 14:55:26 -05:00
Atomic Red Team doc generator 011d389fd6 Generated docs from job=generate-docs branch=master [ci skip] 2024-10-28 20:27:18 +00:00
Burak Karaduman 87085643f8 Added new atomic - T1518.001.yaml (#2965) 2024-10-28 13:26:16 -07:00
Atomic Red Team doc generator a9f4ffeb4f Generated docs from job=generate-docs branch=master [ci skip] 2024-10-25 00:22:17 +00:00
Burak Karaduman e701a4aa3e Create T1025.yaml (#2962)
* Create T1025.yaml

* Update T1025.yaml

Edit command key structre.

---------

Co-authored-by: Bhavin Patel <bhavin.j.patel91@gmail.com>
2024-10-24 17:21:23 -07:00
Atomic Red Team doc generator 487dd6f39c Generated docs from job=generate-docs branch=master [ci skip] 2024-10-25 00:15:47 +00:00
Burak Karaduman d93cb3713b Update T1012.yaml (#2959)
* Update T1012.yaml

New atomic added.

* Update T1012.yaml

Command structre fixed

* Update T1012.yaml

Accidentally put a space at the beginning of the file.

---------

Co-authored-by: Bhavin Patel <bhavin.j.patel91@gmail.com>
2024-10-24 17:14:38 -07:00
Atomic Red Team doc generator 93a62234c5 Generated docs from job=generate-docs branch=master [ci skip] 2024-10-24 02:18:27 +00:00
Retrospected f0601183b7 Update T1003.001.yaml (#2961)
* Fix nanodump download url

* Fix nanodump download url
2024-10-23 19:17:30 -07:00
Atomic Red Team doc generator 512c6c2afc Generated docs from job=generate-docs branch=master [ci skip] 2024-10-17 00:25:05 +00:00
Burak Karaduman d220052ac0 Update T1007.yaml (#2958)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-10-16 18:24:11 -06:00
Atomic Red Team doc generator b2d3484155 Generated docs from job=generate-docs branch=master [ci skip] 2024-10-17 00:17:27 +00:00
Burak Karaduman bddd7e6096 Update T1082.yaml (#2956)
New atomic added.
2024-10-16 18:16:23 -06:00
Atomic Red Team doc generator 68270b4bbb Generated docs from job=generate-docs branch=master [ci skip] 2024-10-12 03:08:29 +00:00
Jake H 008daaf6f4 T1486 Improvements (#2950)
* Updates to Encrypt files using ccrypt (FreeBSD/Linux)
- Modified atomic logic to encrypt a copy of the target file rather than the target
- Tidied the prereq management to ensure the atomic is repeatable
- Supplied the encryption key as an argument to prevent the atomic from hanging during execution
- Cleaning encrypted file

* Updates to Encrypt files using openssl (FreeBSD/Linux)
- Included the which command in the executor to ensure the variable is available during single execution without getting prereqs

---------

Co-authored-by: Hare Sudhan <code@0x6c.dev>
2024-10-11 23:07:21 -04:00
Atomic Red Team doc generator d64a63dabc Generated docs from job=generate-docs branch=master [ci skip] 2024-10-12 02:48:49 +00:00
Burak Karaduman 9a962c8f70 Update T1082.yaml (#2955)
New atomic added.
2024-10-11 20:47:50 -06:00
Atomic Red Team doc generator e735076211 Generated docs from job=generate-docs branch=master [ci skip] 2024-10-09 16:03:51 +00:00
Biagio Dipalma 44dc651af1 Update T1562.003.yaml (#2954)
Removing the commands in test f12acddb-7502-4ce6-a146-5b62c59592f1
2024-10-09 11:02:59 -05:00
Atomic Red Team doc generator 8218baac09 Generated docs from job=generate-docs branch=master [ci skip] 2024-10-04 21:11:16 +00:00
Br3akp0int 062948f44f Uac bypassed and persistence (#2939)
* ShrinkLocker PIN,TPM Bitlocker Registry Modification

* Revert "ShrinkLocker PIN,TPM Bitlocker Registry Modification"

* UAC and persistence - T1053.005.yaml

UAC and persistence

* Update T1053.005.yaml

adding atomic back in

---------

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-10-04 15:10:23 -06:00
Atomic Red Team doc generator c52ca8fa9a Generated docs from job=generate-docs branch=master [ci skip] 2024-09-30 17:37:56 +00:00
spyder-griffith f80dec9172 Fix a typo in T108 - Linux VM Check via Hardware (#2948)
`/sys/class/dmi/id/product_name` is being compared twice instead of using `/sys/class/dmi/id/chassis_vendor`
2024-09-30 13:36:55 -04:00
Atomic Red Team doc generator d9bd7044e2 Generated docs from job=generate-docs branch=master [ci skip] 2024-09-24 21:43:47 +00:00
BlueTeamOps 2e9bea8316 Blueteam0ps 31072024 (#2902)
* Update T1560.001.yaml

* Create T1564.008.yaml

* Update T1105.yaml

* Update T1560.001.yaml

Added back elevation_required: true to the previous test as it was mistakenly removed.

* Update T1105.yaml

Fixed up errors

* Update T1560.001.yaml

removed addition elevation_required option

* Update T1560.001.yaml

Fixed the issues based on the feedback
2024-09-24 16:42:55 -05:00