Commit Graph

6538 Commits

Author SHA1 Message Date
navsec 6879f4e317 Add tests for various shellcode running techniques using Go (#2627)
* Adding shellcode running techniques using Go

* Removing auto-generated guid before PR

---------

Co-authored-by: navsec <navsec@navsec.net>
2023-12-01 15:27:51 -06:00
Atomic Red Team doc generator 23aa1d2ded Generated docs from job=generate-docs branch=master [ci skip] 2023-11-30 02:06:58 +00:00
Atomic Red Team GUID generator a2e6f91c86 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-11-30 02:06:45 +00:00
Leo Verlod 160674855f Adding T1087.002 Test - Ldapdomaindump on Linux (#2605)
* Update T1087.002.yaml

* Update T1087.002.yaml

---------

Co-authored-by: Hare Sudhan <code@0x6c.dev>
2023-11-29 21:06:11 -05:00
Atomic Red Team doc generator b16ca202be Generated docs from job=generate-docs branch=master [ci skip] 2023-11-28 16:24:17 +00:00
Atomic Red Team GUID generator f132339bf6 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-11-28 16:24:01 +00:00
PhyoPaingHtun ChiLai 8d981c0488 Update T1112.yaml (Activities To Disable Secondary Authentication Detected) (#2619)
* Update T1112.yaml 

Disable Secondary Authentication Detected

* Update T1112.yaml

Added reference link in description

---------

Co-authored-by: PhyoPaingHtun ChiLai <83696447+PhyoPaing777@users.noreply.github.com>
Co-authored-by: Hare Sudhan <code@0x6c.dev>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-11-28 10:23:25 -06:00
Atomic Red Team doc generator d39bc9e09b Generated docs from job=generate-docs branch=master [ci skip] 2023-11-28 16:18:43 +00:00
Atomic Red Team GUID generator b915978256 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-11-28 16:18:27 +00:00
Matt af453f3fcd Reorganization (#2621)
Reordered so that a standard keychain dump is the first test because it seems to best fit the ATT&CK framework description. Then, separated previous list of certificate commands into 2 tests for clarity and easier use. Removed help command (security -h) and reorganized comments for clarity.

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-11-28 10:17:42 -06:00
Atomic Red Team doc generator 25b10a93d3 Generated docs from job=generate-docs branch=master [ci skip] 2023-11-28 16:02:31 +00:00
Hare Sudhan 3bd3ceb8a2 Update attack_api.rb (#2624)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-11-28 10:01:37 -06:00
publish bot 3a9bc49be3 updating atomics count in README.md [ci skip] 2023-11-28 15:58:51 +00:00
Hare Sudhan 201ad3b17f Validator changes (#2622) 2023-11-28 09:58:02 -06:00
Atomic Red Team doc generator 7ae80c53e8 Generated docs from job=generate-docs branch=master [ci skip] 2023-11-27 21:56:43 +00:00
Atomic Red Team GUID generator 3d383ee5f9 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-11-27 21:56:24 +00:00
Matt 352f85ee32 Add test for keychain dump (#2620)
* Add test for keychain dump

* remove empty keys

---------

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-11-27 15:55:44 -06:00
publish bot 9defc5c7ba updating atomics count in README.md [ci skip] 2023-11-23 23:09:41 +00:00
devasmith4 278f7da632 remove duplicate key (#2617) 2023-11-23 17:09:04 -06:00
publish bot 73a8730d95 updating atomics count in README.md [ci skip] 2023-11-23 17:39:59 +00:00
devasmith4 d70cc3fe9f remove duplicate "elevation required" element (#2616) 2023-11-23 11:39:21 -06:00
dependabot[bot] 7a5aedfb09 Bump jsonschema from 4.19.2 to 4.20.0 (#2612)
* Bump jsonschema from 4.19.2 to 4.20.0

Bumps [jsonschema](https://github.com/python-jsonschema/jsonschema) from 4.19.2 to 4.20.0.
- [Release notes](https://github.com/python-jsonschema/jsonschema/releases)
- [Changelog](https://github.com/python-jsonschema/jsonschema/blob/main/CHANGELOG.rst)
- [Commits](https://github.com/python-jsonschema/jsonschema/compare/v4.19.2...v4.20.0)

---
updated-dependencies:
- dependency-name: jsonschema
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>

* updating atomics count in README.md [ci skip]

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: publish bot <opensource@redcanary.com>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-11-22 17:48:09 -05:00
Atomic Red Team doc generator 60480bf6df Generated docs from job=generate-docs branch=master [ci skip] 2023-11-22 22:46:18 +00:00
kdebscwx 55b75a5d25 T1069.002 test #6 - fix typo in command (#2613)
* T1069.002 test #6 - fix typo in command

* T1069.002 Test #6 fix typo in command
2023-11-22 17:45:26 -05:00
Atomic Red Team doc generator 88d1fbb51d Generated docs from job=generate-docs branch=master [ci skip] 2023-11-20 03:11:31 +00:00
Atomic Red Team GUID generator 0a6beebd6c Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-11-20 03:11:16 +00:00
Swachchhanda Shrawan Poudel 3ae37eaeb0 Lsass memory dump via SilentProcessExit technique (#2611)
* Lsass memory dump via SilentProcessExit technique

* fix yaml

---------

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-11-19 22:10:35 -05:00
Atomic Red Team doc generator bba1e1bc75 Generated docs from job=generate-docs branch=master [ci skip] 2023-11-20 02:53:29 +00:00
Hare Sudhan 73f61a7600 FreeBSD cleanup (#2604)
* FreeBSD cleanup

* fix T1059.004.yaml

* fix T1070.003.yaml

* cleanup

* Fix T1078.003

* fix t1078.003

* fix t1078.003

* fix t1078.003
2023-11-19 21:52:36 -05:00
Atomic Red Team doc generator ca9a658d79 Generated docs from job=generate-docs branch=master [ci skip] 2023-11-19 19:23:53 +00:00
Atomic Red Team GUID generator 55cbd79603 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-11-19 19:23:38 +00:00
AmyHeat 5641019462 Added test for T1070.006 - Timestomp for date modified using SetFile on MacOS (#2608)
* T1070.006 Timestomp for date modified using SetFile on MacOS

* cleanup

* cleanup

---------

Co-authored-by: amyheat <amyheat@rule10.net>
2023-11-19 14:23:04 -05:00
Atomic Red Team doc generator 30aa7cfb02 Generated docs from job=generate-docs branch=master [ci skip] 2023-11-17 17:49:45 +00:00
Steven Dick 12e54c4d08 Nterl0k T1134.001-3 Nsussudio (#2606)
* Update T1134.001.md

* Update T1134.001.yaml

* Update T1134.001.yaml

* Update T1134.001.md

---------

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-11-17 09:48:52 -08:00
Atomic Red Team doc generator 04a5812d41 Generated docs from job=generate-docs branch=master [ci skip] 2023-11-17 17:46:05 +00:00
Atomic Red Team GUID generator 5a9d3290f2 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-11-17 17:45:50 +00:00
0xv1n 2990b979ba New LocalAdmin Persistence Technique (#2602)
* New LocalAdmin Persistence Technique

* use github permanent link

* remove guid

---------

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-11-17 09:45:16 -08:00
Atomic Red Team doc generator 4ef1397635 Generated docs from job=generate-docs branch=master [ci skip] 2023-11-17 17:35:58 +00:00
Atomic Red Team GUID generator 13252e354f Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-11-17 17:35:43 +00:00
Thomas Meng 14b35456cf Add T1055.015 listPlanting test (#2601)
* Add T1055.015 listPlanting test

* Update T1055.015.yaml

Typo

* Update listPlanting.c

Correct typo

* Update T1055.015.yaml

Delete the auto_generated_guid value

* Update T1055.015.yaml

Remove auto_generate_guid

---------

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-11-17 09:35:08 -08:00
Atomic Red Team doc generator 5aec883ca4 Generated docs from job=generate-docs branch=master [ci skip] 2023-11-17 17:32:58 +00:00
Atomic Red Team GUID generator ead225c103 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-11-17 17:32:43 +00:00
Swachchhanda Shrawan Poudel 2e802c737d Added new test that tampers with windows defender registry (#2599)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-11-17 09:32:08 -08:00
Atomic Red Team doc generator cfb9321b8d Generated docs from job=generate-docs branch=master [ci skip] 2023-11-17 17:29:19 +00:00
Atomic Red Team GUID generator e76abe6a90 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-11-17 17:28:59 +00:00
Hare Sudhan 2f26d9917a Duplicate guid fix (#2609)
* duplicate guid fix

* duplicate guid fix
2023-11-17 09:28:12 -08:00
Atomic Red Team doc generator c3dc8abb84 Generated docs from job=generate-docs branch=master [ci skip] 2023-11-13 21:46:56 +00:00
Hare Sudhan 7dfdc97d79 FreeBSD Cleanup (#2603)
* FreeBSD Cleanup

* cleanup

* fix t1016

* reducing multiline if else to single line

* fix t1037.003

* ignore T1003.007

* fix t1003.007

* more fixes
2023-11-13 16:45:43 -05:00
Atomic Red Team doc generator 8961c1692c Generated docs from job=generate-docs branch=master [ci skip] 2023-11-09 04:06:12 +00:00
Atomic Red Team GUID generator bd938f584f Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-11-09 04:05:54 +00:00