Commit Graph

6538 Commits

Author SHA1 Message Date
Atomic Red Team doc generator 936ac00f52 Generated docs from job=generate-docs branch=master [ci skip] 2024-04-06 02:13:59 +00:00
Atomic Red Team GUID generator 61c178723c Generate GUIDs from job=generate-docs branch=master [skip ci] 2024-04-06 02:13:42 +00:00
dwhite9 5ac96ed038 added -f switch to all cleanup "rm" commands to supress the conformation (#2735)
dialog that causes it to hang.

Co-authored-by: dwhite9 <not-supplied>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-04-05 12:19:35 -05:00
publish bot 7d414431ed updating atomics count in README.md [ci skip] 2024-04-04 20:17:26 +00:00
Bhavin Patel a7353cb8c5 Merge pull request #2731 from corg1chug/master
Create T1114.002.yaml
2024-04-04 20:16:45 +00:00
Bhavin Patel cea1117876 Merge branch 'master' into master 2024-04-04 20:12:38 +00:00
publish bot d7979ce7fb updating atomics count in README.md [ci skip] 2024-04-03 05:04:49 +00:00
Hare Sudhan e301d16430 Merge branch 'master' into master 2024-04-03 01:04:30 -04:00
pratinavchandra 87eff2b6b8 Added new atomic test: Update T1105.yaml (#2734)
* Added new atomic test: Update T1105.yaml

* Update T1105.yaml
2024-04-03 01:04:06 -04:00
Atomic Red Team GUID generator 09619c17e4 Generate GUIDs from job=generate-docs branch=master [skip ci] 2024-04-03 02:10:46 +00:00
pratinavchandra 5ae956b990 Added new atomic test: Update T1490.yaml (#2733)
* Added new atomic test: Update T1490.yaml

* Added cleanup_command
2024-04-02 22:10:02 -04:00
corg1chug b18b1a8957 Added new atomic test: Update T1114.002.yaml
fixed typo ' Get-InstalledModule Az.Accounts'
2024-04-02 11:57:47 -04:00
corg1chug a36179d4b4 Merge pull request #1 from redcanaryco/master
updating atomics count in README.md [ci skip]
2024-04-02 10:01:03 -04:00
publish bot b044c4921f updating atomics count in README.md [ci skip] 2024-03-30 02:34:57 +00:00
Hare Sudhan dc001a3b59 Merge branch 'master' into master 2024-03-29 22:34:43 -04:00
pratinavchandra edc7f3eed4 Added new atomic test: Update T1001.002.yaml (#2730)
* Update T1001.002.yaml

* Update T1001.002.yaml

* Update T1001.002.yaml

* Update T1001.002.yaml

* Update T1001.002.yaml

* Update T1001.002.yaml

---------

Co-authored-by: Hare Sudhan <code@0x6c.dev>
2024-03-29 22:34:19 -04:00
publish bot 999ef45ffb updating atomics count in README.md [ci skip] 2024-03-29 18:45:26 +00:00
pyth0n1c a8421f8fb1 Minor fix to "type" field (#2732)
with nonstandard capitalization
2024-03-29 12:44:45 -06:00
corg1chug 0138eae293 Create T1114.002.yaml 2024-03-28 15:38:44 -04:00
publish bot 42dae0db82 updating atomics count in README.md [ci skip] 2024-03-28 06:56:14 +00:00
Carrie Roberts 8059a7fc39 force delete (#2728) 2024-03-28 02:55:34 -04:00
publish bot 5b2892e58f updating atomics count in README.md [ci skip] 2024-03-21 13:21:02 +00:00
pratinavchandra 41e8efa9c8 Update T1569.001.yaml: Fixed description for label_name (#2726)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-03-21 08:20:24 -05:00
publish bot 82c85b0f17 updating atomics count in README.md [ci skip] 2024-03-21 13:19:04 +00:00
TrentonTait 19e82555c6 Update BrowserCollector to use Firefox (#2724) 2024-03-21 08:18:25 -05:00
Atomic Red Team doc generator ac9e63e872 Generated docs from job=generate-docs branch=master [ci skip] 2024-03-18 16:37:08 +00:00
Atomic Red Team GUID generator cf025a46c7 Generate GUIDs from job=generate-docs branch=master [skip ci] 2024-03-18 16:36:55 +00:00
ohadm-cynet 0750e734e6 fix f3ad3c5b-1db1-45c1-81bf-d3370ebab6c8 schema (#2723) 2024-03-18 11:36:19 -05:00
publish bot 1099145948 updating atomics count in README.md [ci skip] 2024-03-17 02:02:32 +00:00
sai prashanth pulisetti 23d1a4b8e7 Update T1072.yaml Deploy 7-Zip Using Chocolatey (#2662)
* Update T1072.yaml Deploy 7-Zip Using Chocolatey

    An adversary may use Chocolatey to remotely deploy the 7-Zip file archiver utility.

* Update T1072.yaml

made changes accordingly

* Update T1072.yaml

---------

Co-authored-by: Hare Sudhan <code@0x6c.dev>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-03-16 21:01:56 -05:00
Atomic Red Team doc generator 299603d06f Generated docs from job=generate-docs branch=master [ci skip] 2024-03-17 01:56:45 +00:00
Atomic Red Team GUID generator 805fbea899 Generate GUIDs from job=generate-docs branch=master [skip ci] 2024-03-17 01:56:33 +00:00
Zitni Handoo 895fb8ab05 Add test 24 to T1562.004 (#2718)
* Add test 24 to T1562.004

Adding a new test (test 24) to T1562.004 - Set a firewall rule using New-NetFirewallRule

* updating default port

---------

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-03-16 20:55:59 -05:00
Atomic Red Team doc generator fdc97c3f37 Generated docs from job=generate-docs branch=master [ci skip] 2024-03-17 01:48:45 +00:00
Atomic Red Team GUID generator 2ef494158f Generate GUIDs from job=generate-docs branch=master [skip ci] 2024-03-17 01:48:33 +00:00
NeuralGlitch 91912fdd93 Added a new atomic to T1202 (#2715)
* Create src

* Delete atomics/T1202/src

* Create GUP.exe

* Delete atomics/T1202/src/GUP.exe

* Create TEST.exe

* Add files via upload

* Delete atomics/T1202/src/TEST.exe

* Update T1202.yaml

Updated new atomic test

* Create test

* Add files via upload

* Delete atomics/T1105/bin/test

* Update T1105.yaml

* remove duplicate

---------

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-03-16 20:47:56 -05:00
publish bot 90bcc79d01 updating atomics count in README.md [ci skip] 2024-03-17 01:25:13 +00:00
itsmeLevan a5e3460d41 Update T1218.011.yaml (#2719)
technique utilizing rundll32.exe and the FileProtocolHandler method to execute a command without requiring administrative privileges. By leveraging rundll32.exe in this manner, the test aims to assess the effectiveness of antivirus solutions, including Bitdefender, Windows Defender, and others, in detecting and preventing command execution evasion. The provided command bypasses certain antivirus detections by using the FileProtocolHandler to execute the specified command, in this case, launching 'calc.exe'. This evasion technique is known for its ability to exploit legitimate processes to execute malicious commands while avoiding detection. The test serves as an evaluation of antivirus solutions' capabilities to detect and mitigate such evasion tactics, contributing to the overall assessment of endpoint security posture.

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2024-03-16 20:24:35 -05:00
Atomic Red Team doc generator 65869495d8 Generated docs from job=generate-docs branch=master [ci skip] 2024-03-13 18:04:34 +00:00
Atomic Red Team GUID generator b4289ea077 Generate GUIDs from job=generate-docs branch=master [skip ci] 2024-03-13 18:04:20 +00:00
Bhavin Patel 8fef682386 Merge pull request #2659 from prashanthpulisetti/patch-7
Update T1580.yaml AWS - EC2 Security Group Enumeration
2024-03-13 18:03:43 +00:00
Bhavin Patel 5a3850c016 Merge branch 'master' into patch-7 2024-03-13 18:01:27 +00:00
Atomic Red Team doc generator be9944dba6 Generated docs from job=generate-docs branch=master [ci skip] 2024-03-13 18:00:02 +00:00
Bhavin Patel 0d12184338 Merge branch 'master' into patch-7 2024-03-13 17:59:57 +00:00
Atomic Red Team GUID generator 25e8d49800 Generate GUIDs from job=generate-docs branch=master [skip ci] 2024-03-13 17:59:42 +00:00
Bhavin Patel e12ad94216 Merge branch 'master' into patch-7 2024-03-13 17:59:14 +00:00
Bhavin Patel b408522fb3 Merge pull request #2722 from prashanthpulisetti/patch-12
Update T1070.003.yaml
2024-03-13 17:58:56 +00:00
Bhavin Patel 6cd7fb1b8c Update T1070.003.yaml
Removing guid
2024-03-13 10:57:47 -07:00
sai prashanth pulisetti 82ecf271e7 Merge branch 'master' into patch-7 2024-03-13 17:46:09 +00:00
sai prashanth pulisetti 485d1b831d Update T1070.003.yaml
updated bash
2024-03-13 19:02:14 +05:30