Michael Haag
|
382d6313a3
|
Windows Matrix Update
Windows Matrix update
+ also fixed Dir names/paths
|
2018-01-16 10:10:52 -07:00 |
|
Michael Haag
|
1cf1cdd279
|
Reactor Chain Reaction
Chain Reaction - Reactor
|
2018-01-16 08:59:22 -07:00 |
|
caseysmithrc
|
3ac9834f38
|
mshta
|
2018-01-16 08:56:26 -07:00 |
|
caseysmithrc
|
1b087c7e2a
|
Update Program.cs
|
2018-01-13 12:28:33 -07:00 |
|
Michael Haag
|
66c8240afa
|
Merge pull request #61 from atmathis/master
Mac Linux adds
|
2018-01-11 15:25:54 -07:00 |
|
atmathis
|
89513673d7
|
Linux Discovery
* Added several Linux Discovery tactics and updated grid
|
2018-01-11 16:56:58 -05:00 |
|
atmathis
|
d0cf8c4542
|
Update Process Discovery
* Made a change to Process Discovery (added saving the output for exfil)
* Added Process Discovery to Linux and updated grid
|
2018-01-11 16:09:12 -05:00 |
|
atmathis
|
0e877849ef
|
Fixing .bash_profile
* Removed commands not related to this technique, and replaced them
with legitimate ones.
* Added .bash_profile page to Mac
|
2018-01-11 15:54:20 -05:00 |
|
atmathis
|
4cd236a438
|
Adding tree command to File and Directory Discovery
Added the “tree” command, which is useful at showing a “graphical”
hierarchy of files and folders on a drive.
|
2018-01-11 15:33:27 -05:00 |
|
atmathis
|
be3a018733
|
Merge remote-tracking branch 'redcanaryco/master'
|
2018-01-11 15:32:32 -05:00 |
|
caseysmithrc
|
776fc6b954
|
Merge pull request #60 from redcanaryco/Haag
Fixes
|
2018-01-11 11:15:57 -07:00 |
|
Michael Haag
|
1499c4be3f
|
Fixes
Updated and fixed some mistakes over time.
|
2018-01-11 11:00:46 -07:00 |
|
atmathis
|
9c9c27ddd1
|
Merge remote-tracking branch 'redcanaryco/master'
# Conflicts:
# Mac/README.md
|
2018-01-11 09:58:01 -05:00 |
|
Michael Haag
|
5b4a8b9c0b
|
Merge pull request #59 from infosecn1nja/patch-3
Update File_and_Directory_Discovery.md
|
2018-01-11 07:24:31 -07:00 |
|
rahmatnurfauzi
|
9c8137a56a
|
Update File_and_Directory_Discovery.md
Adding more commands taken from Waterbug/Turla
|
2018-01-11 17:12:09 +07:00 |
|
caseysmithrc
|
dcccde9adc
|
Merge pull request #57 from redcanaryco/Haag
Mac - Discovery Techniques
|
2018-01-09 15:11:42 -07:00 |
|
Michael Haag
|
29cf36761a
|
Mac Discovery
Added many techniques to Discovery for Mac
|
2018-01-09 14:53:47 -07:00 |
|
Michael Haag
|
533e27193f
|
Update chain_reaction_Fission.bat
|
2018-01-09 10:52:57 -07:00 |
|
caseysmithrc
|
72a010b9b1
|
Merge pull request #56 from redcanaryco/Haag
Mac - Credential Access
|
2018-01-09 10:07:55 -07:00 |
|
Michael Haag
|
c4bbef438a
|
Mac Credential Access
Added two Credential Access
|
2018-01-09 10:01:11 -07:00 |
|
caseysmithrc
|
f4fe0d67d6
|
Merge pull request #53 from infosecn1nja/patch-1
Persistence .bashrc / .bash_profile
|
2018-01-09 09:26:41 -07:00 |
|
caseysmithrc
|
ee4d1f9e22
|
Merge pull request #54 from redcanaryco/Haag
Mac Persistence
|
2018-01-09 09:26:15 -07:00 |
|
Michael Haag
|
3c84c659f5
|
Mac Persistence
Added many mac persistence items and updated readme
|
2018-01-09 09:07:41 -07:00 |
|
Michael Haag
|
4480d4d11d
|
Cron Job name fix
Removed incorrect name and made it proper.
|
2018-01-09 07:08:46 -07:00 |
|
Michael Haag
|
8f10054683
|
Update Mac ReadMe
Added all the missing pieces to the puzzle
|
2018-01-09 07:03:47 -07:00 |
|
caseysmithrc
|
a54ad3e2a8
|
Merge pull request #51 from redcanaryco/Haag
Mac Additions
|
2018-01-08 14:58:21 -07:00 |
|
Michael Haag
|
c9d674bf80
|
Merge pull request #49 from JimmyAstle/Discover/Files_folders_Linux
Discover/files_folders_Linux
|
2018-01-08 14:55:40 -07:00 |
|
Michael Haag
|
b56282c007
|
Merge pull request #52 from JimmyAstle/Discovery/System_Information_Discovery
Adding in some Linux System OS discovery one liners
|
2018-01-08 14:54:39 -07:00 |
|
Rahmat Nurfauzi
|
4842ffb05d
|
Persistence .bashrc / .bash_profile
|
2018-01-07 05:55:19 +07:00 |
|
atmathis
|
42d3c51ed9
|
Fix Mac Grid
* Updated Mac grid to add “.md” on Indicator_Removal_On_Host to resolve
404.
|
2018-01-03 23:11:30 -05:00 |
|
atmathis
|
0df10d39cb
|
Merge remote-tracking branch 'redcanaryco/master'
|
2018-01-03 23:07:54 -05:00 |
|
Jimmy Astle
|
f5c1d7af56
|
Adding in some Linux System OS discovery one liners
|
2018-01-03 17:34:12 -05:00 |
|
Michael Haag
|
6160fd756e
|
Readme
Boring readme update
|
2018-01-03 09:07:53 -07:00 |
|
Michael Haag
|
0b6275cf50
|
Mac Additions
+ Account Discovery
+ File and Directory Discovery
|
2018-01-03 09:05:14 -07:00 |
|
JimmyAstle
|
d0d71177e1
|
Merge branch 'master' into Discover/Files_folders_Linux
|
2018-01-03 10:34:10 -05:00 |
|
Michael Haag
|
9a4b06e89d
|
Merge pull request #50 from JimmyAstle/Defense_Evasion/Clear_history
Defense evasion/clear_history
|
2018-01-03 07:30:49 -07:00 |
|
Michael Haag
|
a8ae18ca0b
|
Merge pull request #48 from JimmyAstle/Discovery/Account_Linux
Discovery/account_Linux
|
2018-01-03 07:30:10 -07:00 |
|
Jimmy Astle
|
e36a8e3377
|
Removing the groups command as that should live in a seperate spot
|
2018-01-02 17:20:28 -05:00 |
|
Jimmy Astle
|
7f78ad5ace
|
Adding in missing table link for Account Discovery
|
2018-01-02 17:16:27 -05:00 |
|
Michael Haag
|
976b27a683
|
Merge branch 'master' into Haag
|
2018-01-02 14:54:44 -07:00 |
|
Michael Haag
|
6dea66bdec
|
Defense Evastion
+ Added method to stop event logs
|
2018-01-02 14:54:21 -07:00 |
|
Jimmy Astle
|
219534d464
|
Updating Table to link to file and folder discovery
|
2018-01-02 16:11:04 -05:00 |
|
Jimmy Astle
|
919993d886
|
Couple of fun searching techniques
|
2018-01-02 16:07:07 -05:00 |
|
Jimmy Astle
|
e7d731615e
|
Adding in a few more account discovery techniques
|
2018-01-02 16:03:14 -05:00 |
|
Jimmy Astle
|
22d7cdcec8
|
Echo white space into bach history
|
2018-01-02 15:45:53 -05:00 |
|
Jimmy Astle
|
7dd644c77b
|
Adding in dev/null bash history symlink
|
2018-01-02 15:36:15 -05:00 |
|
Michael Haag
|
68e5c6c5ab
|
Merge pull request #47 from atmathis
Add/Change Mac Techniques
Cleanup AllTheThings Payload
|
2018-01-02 07:55:00 -07:00 |
|
Michael Haag
|
1cb5f30dc0
|
Update Input_Prompt.md
|
2018-01-02 07:52:43 -07:00 |
|
atmathis
|
3ef9e7a62c
|
Mac Defense Evasion/Launchctl
* Added Mac Defense Evasion/Launchctl and updated Matrix
|
2018-01-01 17:18:54 -05:00 |
|
atmathis
|
5802bb2df8
|
Mac Indicator Removal on Host
* Added Mac Defense Evasion / Indicator Removal on Host and updated
Matrix
|
2018-01-01 17:07:42 -05:00 |
|