Commit Graph

6538 Commits

Author SHA1 Message Date
Matt Graeber 65c50d7548 Merge pull request #977 from clr2of8/guid
Add a GUID to each atomic test
2020-05-15 13:18:57 -04:00
Carrie Roberts bc4bcf8946 Merge branch 'master' into guid 2020-05-15 10:56:49 -06:00
clr2of8 171428fe92 fix identifier 2020-05-14 18:53:36 -06:00
clr2of8 46fe9ba46a fix identifier 2020-05-14 18:52:16 -06:00
clr2of8 9d36e4eed2 add executor name to csv index 2020-05-14 17:07:39 -06:00
Michael Haag 0ff5763604 T1114 - Email Collection (#993)
* Breathed new life into T1114

* Update T1114.yaml

* Generate docs from job=validate_atomics_generate_docs branch=T1114-Fixing

Co-authored-by: CircleCI Atomic Red Team doc generator <email>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2020-05-14 16:54:20 -06:00
Michael Haag cbe842b8d8 T1003 pwcollector (#989)
* T1003 - Chrome Password Collector

* Generate docs from job=validate_atomics_generate_docs branch=T1003-Pwcollector

Co-authored-by: CircleCI Atomic Red Team doc generator <email>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2020-05-14 16:48:14 -06:00
CircleCI Atomic Red Team doc generator 4c563459ce Generate docs from job=validate_atomics_generate_docs branch=master 2020-05-14 22:43:48 +00:00
tlor89 2954c1fc39 T1027 4 update (#992)
* T1027-4_Update

* T1027-4_Update

Co-authored-by: Toua Lor <tlor@nti.local>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2020-05-14 16:43:28 -06:00
CircleCI Atomic Red Team doc generator 82af4ecbd9 Generate docs from job=validate_atomics_generate_docs branch=master 2020-05-14 16:54:18 +00:00
Carrie Roberts 52884708e4 typo fix (#987) 2020-05-14 10:53:50 -06:00
Michael Haag 2817e257d4 T1088 sdclt.exe UAC Bypass (#986)
* T1088 sdclt Fileless UAC Bypass

Adding simple sdclt uac bypass to Atomic.

* Generate docs from job=validate_atomics_generate_docs branch=T1088-UAC

Co-authored-by: CircleCI Atomic Red Team doc generator <email>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2020-05-14 10:52:44 -06:00
CircleCI Atomic Red Team doc generator 5047631117 Generate docs from job=validate_atomics_generate_docs branch=master 2020-05-14 15:58:10 +00:00
Tsora-Pop cc4d7c0a86 Edited & Updated T1217 (#988)
* Edited 1217  for Edge Chromium

Edited 1217 atomic as it also executes for Edge Chromium on Windows

* Updates T1217

Added Atomic for listing location of all FireFox bookmark databases

* typo fix

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2020-05-14 09:57:37 -06:00
clr2of8 b15ce24af7 add guid to csv indexes 2020-05-13 12:05:36 -06:00
CircleCI Atomic Red Team doc generator efb886208f Generate docs from job=validate_atomics_generate_docs branch=master 2020-05-13 16:49:09 +00:00
Chirag Savla c350a2389d Added test for T1106 (#985)
* Added test for T1106

* Added test for T1106

* Added test for T1106

* Added test for T1106

* Added test for T1106

* Added test for T1106

* Name and description updated

Removed the atomic test number because that is calculated based on the order the test shows up in the yaml. Added description of what user should expect by default it the test runs successfully.

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2020-05-13 10:48:53 -06:00
tlor89 65bf09109d T1027_Folder_Update (#984)
Co-authored-by: Toua Lor <tlor@nti.local>
2020-05-13 10:00:29 -06:00
CircleCI Atomic Red Team doc generator 6f757a1f88 Generate docs from job=validate_atomics_generate_docs branch=master 2020-05-11 19:16:06 +00:00
Carrie Roberts c17dbab6e8 Update links on Indexes (#983)
* index update

* index update
2020-05-11 13:15:27 -06:00
CircleCI Atomic Red Team doc generator e5166f0e66 Generate docs from job=validate_atomics_generate_docs branch=master 2020-05-11 15:16:44 +00:00
Tsora-Pop bbec07bcd6 Update T1176 with Edge Chromium Addon - VPN (#980)
* Update T1176 with Edge Chromium Addon - VPN

Added manual download, install, and cleanup for an Edge Chromium VPN extension.

* Update T1176 with Edge Chromium Addon - VPN

Added manual download, install, and cleanup for an Edge Chromium VPN extension.
2020-05-11 09:16:17 -06:00
clr2of8 8d7ac79b9d corrected error handling msg 2020-05-08 08:11:59 -06:00
clr2of8 216751d0a7 more fixes 2020-05-08 02:02:37 -06:00
Carrie Roberts f9033fd1bf chmod +x for script 2020-05-08 00:51:11 -06:00
clr2of8 a55779f39c a few more fixes 2020-05-08 00:44:33 -06:00
clr2of8 13c90f3f88 debugging 2020-05-08 00:35:40 -06:00
clr2of8 7e22a588c1 debugging 2020-05-08 00:32:58 -06:00
clr2of8 7c593943e2 debugging 2020-05-08 00:26:25 -06:00
clr2of8 e009fdea06 debugging 2020-05-08 00:22:54 -06:00
clr2of8 eae8d7a568 debugging 2020-05-08 00:17:35 -06:00
clr2of8 7a5287913e moved guid file to writable location 2020-05-08 00:10:28 -06:00
clr2of8 99916726ac add file to keep track of used guids 2020-05-07 23:59:07 -06:00
clr2of8 ebf10c34bb better regexes 2020-05-07 23:51:14 -06:00
clr2of8 3e6dff9ab7 add guid element 2020-05-07 22:42:41 -06:00
clr2of8 37814e116b add unique (per yaml file) guid 2020-05-07 07:22:35 -06:00
clr2of8 e47f18e28f wip 2020-05-06 19:38:51 -06:00
clr2of8 553f439941 wip 2020-05-06 19:22:52 -06:00
CircleCI Atomic Red Team doc generator 5859178fd7 Generate docs from job=validate_atomics_generate_docs branch=master 2020-05-06 16:32:18 +00:00
Carrie Roberts bc35907026 typo fix (#974) 2020-05-06 10:31:48 -06:00
CircleCI Atomic Red Team doc generator 06c2cb5074 Generate docs from job=validate_atomics_generate_docs branch=master 2020-05-06 16:27:13 +00:00
Jeremy Brooks c8520ab1af fix type in T1028 command (#976)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2020-05-06 10:26:34 -06:00
CircleCI Atomic Red Team doc generator da779f042d Generate docs from job=validate_atomics_generate_docs branch=master 2020-05-06 16:23:43 +00:00
hypnoticpattern 7d63609ea3 Added dependencies and fixed tests for linux and macOS (#973)
* Added dependencies and fixed tests

* Added description to dependencies.

* Executable presence checked in dependencies

Co-authored-by: hypnoticpattern <>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2020-05-06 10:22:48 -06:00
CircleCI Atomic Red Team doc generator d9dfeab6c2 Generate docs from job=validate_atomics_generate_docs branch=master 2020-05-06 13:34:18 +00:00
Matt Graeber 9fa3eefeb3 Merge pull request #975 from jessecbrown/master
[UPDATE] T1122 - Add two more COR_PROFILER tests
2020-05-06 09:34:01 -04:00
Jesse Brown 3184bea5d8 [UPDATE] T1122 - Add two more COR_PROFILER tests
Add two new cor_profiler tests leveraging system and user scope environment variables.
2020-05-05 20:43:48 -04:00
CircleCI Atomic Red Team doc generator 9860e65402 Generate docs from job=validate_atomics_generate_docs branch=master 2020-05-04 16:47:56 +00:00
Tsora-Pop 405c8330fc Update T1219.yaml (#970)
Added logmein download and execution. updated execution commands to reflect $env:username
2020-05-04 10:47:11 -06:00
CircleCI Atomic Red Team doc generator 2bde901e95 Generate docs from job=validate_atomics_generate_docs branch=master 2020-05-02 00:36:51 +00:00