Commit Graph

6538 Commits

Author SHA1 Message Date
Paul a7863b2d41 Merge pull request #2391 from 0xzeta/patch-1
Added new test - Enabling Remote Desktop Protocol via Remote Registry (T1112)
2023-03-28 08:50:20 -04:00
Zeta ff51371575 Update T1112
Added new technique "Enabling Remote Desktop Protocol via Remote Registry"
2023-03-28 14:28:40 +07:00
Jose Enrique Hernandez eff6370693 add counter parts (#2389) 2023-03-27 16:23:55 -06:00
well123cs 5adba74cbe Merge branch 'master' into t1612-1 2023-03-25 22:51:30 -07:00
D4rkCiph3r 68ec848ae8 Update T1531.yaml 2023-03-26 10:43:28 +05:30
Atomic Red Team doc generator b68a0b6cd7 Generated docs from job=generate-docs branch=master [ci skip] 2023-03-23 23:27:28 +00:00
Ari-Weinberg 49e69856a0 T1070.006 create prereqs for mac/linux timestomp (#2387) 2023-03-23 17:26:37 -06:00
Atomic Red Team doc generator 004e042089 Generated docs from job=generate-docs branch=master [ci skip] 2023-03-23 14:47:57 +00:00
Atomic Red Team GUID generator 869420c151 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-03-23 14:47:38 +00:00
Michael Haag 844d2be02b Two Atomics and a Pear Tree (#2384)
Co-authored-by: Paul <78918118+burning-pm@users.noreply.github.com>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-03-23 08:47:03 -06:00
Atomic Red Team doc generator 0c153fd334 Generated docs from job=generate-docs branch=master [ci skip] 2023-03-23 14:42:04 +00:00
Ari-Weinberg e1a9f47d8d T1070.004 add prereqs for linux/mac file/folder (#2383)
Co-authored-by: Ari-Weinberg <ariweinberg326@gmail.comm>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-03-23 08:41:17 -06:00
Atomic Red Team doc generator 7e1e98a425 Generated docs from job=generate-docs branch=master [ci skip] 2023-03-23 14:34:18 +00:00
Paul 5ed527744c Update T1087.002 Test 17 (#2386)
* Update T1087.002.yaml

* Update T1087.002.yaml

fix cleanup command from Get-Item to Remove-Item
2023-03-23 08:33:18 -06:00
Atomic Red Team doc generator b96d64bfd8 Generated docs from job=generate-docs branch=master [ci skip] 2023-03-22 22:58:34 +00:00
Atomic Red Team GUID generator 935bc9dd9d Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-03-22 22:58:18 +00:00
Jose Enrique Hernandez 26453dc7f0 Merge pull request #2334 from D4rkCiph3r/patch-3
Added new tests (T1562) - macOS
2023-03-22 18:57:48 -04:00
Jose Enrique Hernandez 0b76900b8a Merge branch 'master' into patch-3 2023-03-22 18:57:05 -04:00
Atomic Red Team doc generator a1aaef3294 Generated docs from job=generate-docs branch=master [ci skip] 2023-03-22 22:32:09 +00:00
Atomic Red Team GUID generator 517271c38f Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-03-22 22:31:53 +00:00
Jose Enrique Hernandez 98c87c0925 Merge pull request #2333 from D4rkCiph3r/patch-2
Added new tests - T1070.002 (macOS and Linux)
2023-03-22 18:31:22 -04:00
Jose Enrique Hernandez 8a39735611 Merge branch 'master' into patch-2 2023-03-22 18:30:40 -04:00
Atomic Red Team doc generator 59f8c86459 Generated docs from job=generate-docs branch=master [ci skip] 2023-03-22 22:30:32 +00:00
Jose Enrique Hernandez 972860b5b6 Merge branch 'master' into patch-2 2023-03-22 18:30:18 -04:00
Atomic Red Team GUID generator 2de9b1aa45 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-03-22 22:30:15 +00:00
Jose Enrique Hernandez 8c45fa1a75 Merge pull request #2332 from D4rkCiph3r/patch-1
Added new test case - T1027.001
2023-03-22 18:29:43 -04:00
Jose Enrique Hernandez 4fbe3256d8 Merge branch 'master' into patch-1 2023-03-22 18:28:49 -04:00
well123cs aaa1eb7a45 Merge branch 'master' into master 2023-03-20 15:31:16 -07:00
Atomic Red Team doc generator e9ea0880cb Generated docs from job=generate-docs branch=master [ci skip] 2023-03-20 22:21:10 +00:00
Atomic Red Team GUID generator 8c4cb3229c Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-03-20 22:20:55 +00:00
zaicurity 74f69e9797 Added test "Discover Specific Process - tasklist" (#2373)
* Added test "Discover Specific Process - tasklist"

This test is meant to simulate process discovery activity that targets specific process names. The default process here is lsass to simulate what is seen in https://www.whiteoaksecurity.com/blog/attacks-defenses-dumping-lsass-no-mimikatz/.

* Update T1057.yaml

removed guid

---------

Co-authored-by: Michael Haag <5632822+MHaggis@users.noreply.github.com>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-03-20 16:20:28 -06:00
Atomic Red Team doc generator 41355dea4e Generated docs from job=generate-docs branch=master [ci skip] 2023-03-20 19:39:02 +00:00
Atomic Red Team GUID generator 8a83c877bb Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-03-20 19:38:46 +00:00
Darin Manley 29063f5306 Added RemCom to execute a command on a remote host (#2380)
* Added RemCom to execute a command on a remote host

* Update T1569.002.yaml

---------

Co-authored-by: Michael Haag <5632822+MHaggis@users.noreply.github.com>
2023-03-20 13:38:17 -06:00
Atomic Red Team doc generator 62307f5d7b Generated docs from job=generate-docs branch=master [ci skip] 2023-03-20 15:12:10 +00:00
Paul f0a94f763b Update T1564.yaml (#2379) 2023-03-20 09:07:47 -06:00
D4rkCiph3r 27d8b10de5 Update T1078.001.yaml
New macOS rule for T1078.001
2023-03-19 17:00:59 +05:30
D4rkCiph3r b1871b8273 Update T1070.002.yaml
Updated names and descriptions of the atomic tests.
Added few references and comments.
Updated few atomic tests.
Re-ordered macOS and linux tests for better organisation.
2023-03-18 10:20:14 +05:30
D4rkCiph3r 0f0cdf35ab Update T1562.yaml
Updated the atomic test(#1, #2) name and description.
Added clean-up commands.
2023-03-18 09:07:34 +05:30
D4rkCiph3r 9171dda6f3 Merge branch 'master' into patch-1 2023-03-18 08:27:30 +05:30
D4rkCiph3r 4b2ddac423 Update T1027.001.yaml
Updated the test descriptions for atomic test #1 and #2.
2023-03-18 08:22:10 +05:30
well123cs 07b8c79c9c Merge pull request #4 from JaideepPandher/well123cs-patch-1
adding src files for "Adding tests for container matrix"
2023-03-17 19:32:05 -07:00
well123cs 4d4c9d5b15 Adding tests for containers - yaml changed
Added test for the containers
Made changes in the yaml file to incorporate containers as platforms

![image](https://user-images.githubusercontent.com/119821998/226078329-49da64f7-190c-44b6-a737-c8bf65c3ec89.png)

![image](https://user-images.githubusercontent.com/119821998/226078351-f86cc70b-85b2-4451-8aed-7cb3441453c6.png)
2023-03-17 19:31:44 -07:00
well123cs f46fd0dc27 Add files via upload 2023-03-17 19:29:14 -07:00
well123cs 5666993185 Merge pull request #3 from JaideepPandher/revert-2-t1046 2023-03-17 18:34:42 -07:00
well123cs 0773daad12 Revert "Add files via upload" 2023-03-17 18:34:12 -07:00
well123cs b5282ed9b6 Merge pull request #2 from JaideepPandher/t1046
Add files via upload
2023-03-17 18:26:07 -07:00
well123cs 1347a1a8f5 Add files via upload 2023-03-17 18:17:14 -07:00
well123cs 9f2ea7901c Merge branch 'master' into t1612-1 2023-03-17 17:51:11 -07:00
well123cs 15384a3a43 Merge pull request #1 from well123cs/t1612-1
T1612
2023-03-17 17:50:05 -07:00