Paul
a7863b2d41
Merge pull request #2391 from 0xzeta/patch-1
...
Added new test - Enabling Remote Desktop Protocol via Remote Registry (T1112)
2023-03-28 08:50:20 -04:00
Zeta
ff51371575
Update T1112
...
Added new technique "Enabling Remote Desktop Protocol via Remote Registry"
2023-03-28 14:28:40 +07:00
Jose Enrique Hernandez
eff6370693
add counter parts ( #2389 )
2023-03-27 16:23:55 -06:00
well123cs
5adba74cbe
Merge branch 'master' into t1612-1
2023-03-25 22:51:30 -07:00
D4rkCiph3r
68ec848ae8
Update T1531.yaml
2023-03-26 10:43:28 +05:30
Atomic Red Team doc generator
b68a0b6cd7
Generated docs from job=generate-docs branch=master [ci skip]
2023-03-23 23:27:28 +00:00
Ari-Weinberg
49e69856a0
T1070.006 create prereqs for mac/linux timestomp ( #2387 )
2023-03-23 17:26:37 -06:00
Atomic Red Team doc generator
004e042089
Generated docs from job=generate-docs branch=master [ci skip]
2023-03-23 14:47:57 +00:00
Atomic Red Team GUID generator
869420c151
Generate GUIDs from job=generate-docs branch=master [skip ci]
2023-03-23 14:47:38 +00:00
Michael Haag
844d2be02b
Two Atomics and a Pear Tree ( #2384 )
...
Co-authored-by: Paul <78918118+burning-pm@users.noreply.github.com >
Co-authored-by: Carrie Roberts <clr2of8@gmail.com >
2023-03-23 08:47:03 -06:00
Atomic Red Team doc generator
0c153fd334
Generated docs from job=generate-docs branch=master [ci skip]
2023-03-23 14:42:04 +00:00
Ari-Weinberg
e1a9f47d8d
T1070.004 add prereqs for linux/mac file/folder ( #2383 )
...
Co-authored-by: Ari-Weinberg <ariweinberg326@gmail.comm >
Co-authored-by: Carrie Roberts <clr2of8@gmail.com >
2023-03-23 08:41:17 -06:00
Atomic Red Team doc generator
7e1e98a425
Generated docs from job=generate-docs branch=master [ci skip]
2023-03-23 14:34:18 +00:00
Paul
5ed527744c
Update T1087.002 Test 17 ( #2386 )
...
* Update T1087.002.yaml
* Update T1087.002.yaml
fix cleanup command from Get-Item to Remove-Item
2023-03-23 08:33:18 -06:00
Atomic Red Team doc generator
b96d64bfd8
Generated docs from job=generate-docs branch=master [ci skip]
2023-03-22 22:58:34 +00:00
Atomic Red Team GUID generator
935bc9dd9d
Generate GUIDs from job=generate-docs branch=master [skip ci]
2023-03-22 22:58:18 +00:00
Jose Enrique Hernandez
26453dc7f0
Merge pull request #2334 from D4rkCiph3r/patch-3
...
Added new tests (T1562) - macOS
2023-03-22 18:57:48 -04:00
Jose Enrique Hernandez
0b76900b8a
Merge branch 'master' into patch-3
2023-03-22 18:57:05 -04:00
Atomic Red Team doc generator
a1aaef3294
Generated docs from job=generate-docs branch=master [ci skip]
2023-03-22 22:32:09 +00:00
Atomic Red Team GUID generator
517271c38f
Generate GUIDs from job=generate-docs branch=master [skip ci]
2023-03-22 22:31:53 +00:00
Jose Enrique Hernandez
98c87c0925
Merge pull request #2333 from D4rkCiph3r/patch-2
...
Added new tests - T1070.002 (macOS and Linux)
2023-03-22 18:31:22 -04:00
Jose Enrique Hernandez
8a39735611
Merge branch 'master' into patch-2
2023-03-22 18:30:40 -04:00
Atomic Red Team doc generator
59f8c86459
Generated docs from job=generate-docs branch=master [ci skip]
2023-03-22 22:30:32 +00:00
Jose Enrique Hernandez
972860b5b6
Merge branch 'master' into patch-2
2023-03-22 18:30:18 -04:00
Atomic Red Team GUID generator
2de9b1aa45
Generate GUIDs from job=generate-docs branch=master [skip ci]
2023-03-22 22:30:15 +00:00
Jose Enrique Hernandez
8c45fa1a75
Merge pull request #2332 from D4rkCiph3r/patch-1
...
Added new test case - T1027.001
2023-03-22 18:29:43 -04:00
Jose Enrique Hernandez
4fbe3256d8
Merge branch 'master' into patch-1
2023-03-22 18:28:49 -04:00
well123cs
aaa1eb7a45
Merge branch 'master' into master
2023-03-20 15:31:16 -07:00
Atomic Red Team doc generator
e9ea0880cb
Generated docs from job=generate-docs branch=master [ci skip]
2023-03-20 22:21:10 +00:00
Atomic Red Team GUID generator
8c4cb3229c
Generate GUIDs from job=generate-docs branch=master [skip ci]
2023-03-20 22:20:55 +00:00
zaicurity
74f69e9797
Added test "Discover Specific Process - tasklist" ( #2373 )
...
* Added test "Discover Specific Process - tasklist"
This test is meant to simulate process discovery activity that targets specific process names. The default process here is lsass to simulate what is seen in https://www.whiteoaksecurity.com/blog/attacks-defenses-dumping-lsass-no-mimikatz/ .
* Update T1057.yaml
removed guid
---------
Co-authored-by: Michael Haag <5632822+MHaggis@users.noreply.github.com >
Co-authored-by: Carrie Roberts <clr2of8@gmail.com >
2023-03-20 16:20:28 -06:00
Atomic Red Team doc generator
41355dea4e
Generated docs from job=generate-docs branch=master [ci skip]
2023-03-20 19:39:02 +00:00
Atomic Red Team GUID generator
8a83c877bb
Generate GUIDs from job=generate-docs branch=master [skip ci]
2023-03-20 19:38:46 +00:00
Darin Manley
29063f5306
Added RemCom to execute a command on a remote host ( #2380 )
...
* Added RemCom to execute a command on a remote host
* Update T1569.002.yaml
---------
Co-authored-by: Michael Haag <5632822+MHaggis@users.noreply.github.com >
2023-03-20 13:38:17 -06:00
Atomic Red Team doc generator
62307f5d7b
Generated docs from job=generate-docs branch=master [ci skip]
2023-03-20 15:12:10 +00:00
Paul
f0a94f763b
Update T1564.yaml ( #2379 )
2023-03-20 09:07:47 -06:00
D4rkCiph3r
27d8b10de5
Update T1078.001.yaml
...
New macOS rule for T1078.001
2023-03-19 17:00:59 +05:30
D4rkCiph3r
b1871b8273
Update T1070.002.yaml
...
Updated names and descriptions of the atomic tests.
Added few references and comments.
Updated few atomic tests.
Re-ordered macOS and linux tests for better organisation.
2023-03-18 10:20:14 +05:30
D4rkCiph3r
0f0cdf35ab
Update T1562.yaml
...
Updated the atomic test(#1 , #2 ) name and description.
Added clean-up commands.
2023-03-18 09:07:34 +05:30
D4rkCiph3r
9171dda6f3
Merge branch 'master' into patch-1
2023-03-18 08:27:30 +05:30
D4rkCiph3r
4b2ddac423
Update T1027.001.yaml
...
Updated the test descriptions for atomic test #1 and #2 .
2023-03-18 08:22:10 +05:30
well123cs
07b8c79c9c
Merge pull request #4 from JaideepPandher/well123cs-patch-1
...
adding src files for "Adding tests for container matrix"
2023-03-17 19:32:05 -07:00
well123cs
4d4c9d5b15
Adding tests for containers - yaml changed
...
Added test for the containers
Made changes in the yaml file to incorporate containers as platforms


2023-03-17 19:31:44 -07:00
well123cs
f46fd0dc27
Add files via upload
2023-03-17 19:29:14 -07:00
well123cs
5666993185
Merge pull request #3 from JaideepPandher/revert-2-t1046
2023-03-17 18:34:42 -07:00
well123cs
0773daad12
Revert "Add files via upload"
2023-03-17 18:34:12 -07:00
well123cs
b5282ed9b6
Merge pull request #2 from JaideepPandher/t1046
...
Add files via upload
2023-03-17 18:26:07 -07:00
well123cs
1347a1a8f5
Add files via upload
2023-03-17 18:17:14 -07:00
well123cs
9f2ea7901c
Merge branch 'master' into t1612-1
2023-03-17 17:51:11 -07:00
well123cs
15384a3a43
Merge pull request #1 from well123cs/t1612-1
...
T1612
2023-03-17 17:50:05 -07:00