Commit Graph

6538 Commits

Author SHA1 Message Date
Alex M a0e412b702 fix syntax 2023-06-04 09:10:55 -07:00
Alex M 96d3881149 parameterize T1070.002 tests for optional non-destructive runs 2023-06-04 09:01:22 -07:00
BlueTeamOps 31c61d70ef Merge branch 'redcanaryco:master' into patch-10 2023-06-03 23:04:37 +10:00
Clément Notin f5ce8af9a4 No need to export the PFX to get the public certificate, so removed it 2023-06-02 17:28:23 +02:00
Alonso Cárdenas 765445a51a Add support for FreeBSD 2023-06-01 22:16:56 -05:00
Alonso Cárdenas 97cd6fc8fe - Add freebsd test 2023-06-01 22:10:20 -05:00
Alonso Cárdenas 86913f3573 Merge branch 'master' of https://github.com/alonsobsd/atomic-red-team 2023-06-01 22:03:39 -05:00
Alonso Cárdenas c960254da1 Try to fix conflicts 2023-06-01 21:06:47 -05:00
Alonso Cárdenas b26e90f980 Fix conflicts 2023-06-01 21:01:04 -05:00
Atomic Red Team doc generator f51b61321b Generated docs from job=generate-docs branch=master [ci skip] 2023-06-02 01:16:22 +00:00
Atomic Red Team GUID generator 992ce5a4ce Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-06-02 01:16:02 +00:00
Jose Enrique Hernandez bee33f444a Merge pull request #2369 from iai-rsa/T1562.004
update T1562.004 with more commands
2023-06-01 21:15:13 -04:00
Jose Enrique Hernandez 1663919f61 removed unecessary field 2023-06-01 21:11:47 -04:00
Jose Enrique Hernandez be7294e5bc removed extra guid field 2023-06-01 21:06:22 -04:00
Jose Enrique Hernandez 6e1d414a6e Merge branch 'master' into T1562.004 2023-06-01 21:03:56 -04:00
Atomic Red Team doc generator 215898b25a Generated docs from job=generate-docs branch=master [ci skip] 2023-06-01 20:25:44 +00:00
Atomic Red Team GUID generator 53bb17be7c Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-06-01 20:25:27 +00:00
Hare Sudhan 22150beff8 Merge pull request #2427 from aranhams/patch-1
Add new atomic test to T1140.yaml
2023-06-01 16:24:41 -04:00
Hare Sudhan 5b570a0f4d Merge branch 'master' into patch-1 2023-06-01 13:53:52 -04:00
Atomic Red Team doc generator 210485a6d3 Generated docs from job=generate-docs branch=master [ci skip] 2023-05-31 21:17:38 +00:00
Carrie Roberts af9378c9f3 update executor (#2444)
* update executor

* Update T1016.yaml

---------

Co-authored-by: Michael Haag <5632822+MHaggis@users.noreply.github.com>
2023-05-31 15:16:42 -06:00
Atomic Red Team doc generator cb29aa596f Generated docs from job=generate-docs branch=master [ci skip] 2023-05-31 21:08:41 +00:00
Carrie Roberts 35c539e776 move PS1 to src (#2443)
Co-authored-by: Michael Haag <5632822+MHaggis@users.noreply.github.com>
2023-05-31 15:07:35 -06:00
Atomic Red Team doc generator 03e04d3994 Generated docs from job=generate-docs branch=master [ci skip] 2023-05-31 21:04:38 +00:00
Carrie Roberts bf2a19d672 handle null value in prereq (#2442)
Co-authored-by: Michael Haag <5632822+MHaggis@users.noreply.github.com>
2023-05-31 15:03:42 -06:00
Atomic Red Team doc generator a95bc62be4 Generated docs from job=generate-docs branch=master [ci skip] 2023-05-31 20:57:54 +00:00
Atomic Red Team GUID generator d7191cd8b1 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-05-31 20:57:30 +00:00
KillrBunn3 f19429af8c New test under T1027: Executing zipped JavaScript using WScript (#2447)
* Update T1027.yaml

This test is intended to closely emulate Gootloader's patterns of execution - launching a js file through wscript after being unpacked from a .zip.

* leave prereq files in place

---------

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-05-31 15:56:36 -05:00
Atomic Red Team doc generator b471d4cc2b Generated docs from job=generate-docs branch=master [ci skip] 2023-05-31 20:54:37 +00:00
Carrie Roberts 3ee287e1e3 restart rdp after changes (#2449)
Co-authored-by: Michael Haag <5632822+MHaggis@users.noreply.github.com>
2023-05-31 14:53:42 -06:00
Atomic Red Team doc generator a59de488ff Generated docs from job=generate-docs branch=master [ci skip] 2023-05-31 20:51:23 +00:00
KillrBunn3 65294196d0 Spelling adjustments (#2448)
Looking over the YAMLs mostly, only changes for readability or accuracy
2023-05-31 15:50:22 -05:00
Atomic Red Team doc generator 1c1f63ede7 Generated docs from job=generate-docs branch=master [ci skip] 2023-05-30 21:22:52 +00:00
Atomic Red Team GUID generator 3791f515f2 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-05-30 21:22:34 +00:00
Alphonsa George 52530d45d1 Adding atomics to emulate suspicious LAPS attribute queries (#2445)
* Adding atomics to emulate suspicious LAPS attribute queries

* Adding atomics to emulate suspicious LAPS attribute queries

* Adding atomics to emulate suspicious LAPS attribute queries

---------

Co-authored-by: alphonsa-01 <NA>
2023-05-30 16:21:54 -05:00
Hare Sudhan 4b5d264468 Merge branch 'master' into patch-1 2023-05-29 09:07:46 -04:00
Hare Sudhan d5d4fd7985 Merge branch 'master' into t1078_tf 2023-05-29 09:04:35 -04:00
Atomic Red Team doc generator 417ee7ba17 Generated docs from job=generate-docs branch=master [ci skip] 2023-05-28 02:35:16 +00:00
Hare Sudhan 4817d52334 Merge pull request #2441 from redcanaryco/clr2of8-patch-37 2023-05-27 22:34:11 -04:00
Matheus Aranha 87e2c0406a fix: removed GUID field 2023-05-27 20:50:57 +02:00
Carrie Roberts 0665611356 elevation not required for password changes 2023-05-26 19:04:02 -06:00
Atomic Red Team doc generator 35fa10287e Generated docs from job=generate-docs branch=master [ci skip] 2023-05-26 20:46:19 +00:00
Atomic Red Team GUID generator bafcc36958 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-05-26 20:46:01 +00:00
Hare Sudhan 7038a5299f Merge pull request #2440 from clr2of8/password-policy-checks
Password policy checks
2023-05-26 16:45:17 -04:00
Carrie Roberts a62d04d488 fix double quotes 2023-05-26 14:37:52 -06:00
Carrie Roberts 897aad996c Merge branch 'master' into password-policy-checks 2023-05-25 18:54:07 -05:00
clr2of8 be43e3cc29 password policy checks 2023-05-25 17:53:13 -06:00
clr2of8 6a45233b2a password policy checks 2023-05-25 17:45:35 -06:00
clr2of8 652d372f4d password policy checks 2023-05-25 17:42:04 -06:00
Jose Enrique Hernandez cfe582b2b2 Merge branch 'master' into patch-1 2023-05-25 13:28:43 -04:00