Commit Graph

6615 Commits

Author SHA1 Message Date
Atomic Red Team doc generator eaa3105334 Generated docs from job=generate-docs branch=master [ci skip] 2023-02-22 23:44:27 +00:00
Bhavin Patel 0b88fe0f86 Merge pull request #2185 from cyberbuff/tf
Terraform Proposal
2023-02-22 15:43:41 -08:00
Hare Sudhan fd48874d74 Pre req command fix 2023-02-22 17:11:56 -05:00
Hare Sudhan a279091504 azure terraform changes 2023-02-22 14:52:31 -05:00
Hare Sudhan 595bd4ea6a merge with master 2023-02-22 14:15:37 -05:00
Hare Sudhan 83b99f8349 merge with master 2023-02-22 14:09:13 -05:00
Hare Sudhan 2d5a269ac6 merge with master 2023-02-22 14:07:00 -05:00
biot-2131 213bcda8cf T1546.004 Create/Append to .bash_logout 2023-02-22 19:01:51 +00:00
Hare Sudhan 84d99ecc17 merge with master 2023-02-22 13:55:17 -05:00
tccontre d80db05f43 Update T1562.001.yaml 2023-02-22 17:10:05 +01:00
biot-2131 e387ff2c9a T1059.004 Added Detecting pipe-to-shell 2023-02-22 16:07:25 +00:00
tccontre 7663ee597a Update T1562.001.yaml 2023-02-22 09:47:10 +01:00
tccontre fea0d547de Update T1562.001.yaml 2023-02-22 09:30:20 +01:00
D4rkCiph3r df0a9f7ca4 Merge branch 'redcanaryco:master' into patch-2 2023-02-22 13:54:55 +05:30
Atomic Red Team doc generator 36b1f36dc3 Generated docs from job=generate-docs branch=master [ci skip] 2023-02-22 03:13:57 +00:00
Jose Enrique Hernandez bf3497ecbf Merge branch 'master' into T1110.001_II 2023-02-21 22:13:55 -05:00
Atomic Red Team GUID generator 8e1ebc91d9 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-02-22 03:13:37 +00:00
Jose Enrique Hernandez 9eb2fa0f78 Merge branch 'master' into Awfulshred-TTPs 2023-02-21 22:13:17 -05:00
Jose Enrique Hernandez b0ba2a54ea Merge pull request #2325 from biot-2131/T1059.004_III
T1059.004 Added two tests
2023-02-21 22:13:01 -05:00
Jose Enrique Hernandez a0516cf9a8 Merge branch 'master' into T1059.004_III 2023-02-21 22:00:23 -05:00
Atomic Red Team doc generator 2e20d9309a Generated docs from job=generate-docs branch=master [ci skip] 2023-02-22 02:56:42 +00:00
Atomic Red Team GUID generator 18418295de Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-02-22 02:56:26 +00:00
Jose Enrique Hernandez 04d68c8f3e Merge pull request #2326 from redcanaryco/T1548_001_add_find_cmds
Added two new tests to T1548.001
2023-02-21 21:55:54 -05:00
Jose Enrique Hernandez 2bb592e35b Merge branch 'master' into T1548_001_add_find_cmds 2023-02-21 21:47:51 -05:00
Jose Enrique Hernandez c8d7ddd890 Merge branch 'master' into patch-2 2023-02-21 21:46:11 -05:00
Jose Enrique Hernandez 7ee52ce265 Merge branch 'master' into T1110.001_II 2023-02-21 21:44:38 -05:00
Jose Enrique Hernandez 719bb691f6 Merge branch 'master' into Awfulshred-TTPs 2023-02-21 21:41:11 -05:00
Atomic Red Team doc generator 167123c18d Generated docs from job=generate-docs branch=master [ci skip] 2023-02-22 02:06:30 +00:00
Atomic Red Team GUID generator 0ea8334a99 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-02-22 02:06:14 +00:00
IntelScott 41ed45bbdb Add new test - Windows time Command (#2337)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-02-21 19:05:49 -07:00
Atomic Red Team doc generator 833a7d910b Generated docs from job=generate-docs branch=master [ci skip] 2023-02-22 02:02:55 +00:00
Clément Notin 4babecb60e Minor English fixes (#2339) 2023-02-21 19:02:06 -07:00
Jose Enrique Hernandez e6b9d61bfe Merge branch 'master' into Awfulshred-TTPs 2023-02-21 20:53:15 -05:00
Clément Notin fc5a75efd1 Use -Filter instead of Where-Object to improve perf and avoid missed items
-Filter is the recommended way to filter objects because it filters them at the source (AAD)
instead of fetching everything and filtering on the client. So the perf are better.
Moreover, by default the cmdlets returns a limited number of items so it can miss stuff
(except if using -All like it was done in some cases)
2023-02-21 14:33:47 +01:00
D4rkCiph3r 6798df9620 Merge branch 'redcanaryco:master' into patch-3 2023-02-21 11:20:17 +05:30
D4rkCiph3r 73edc25a41 Merge branch 'redcanaryco:master' into patch-2 2023-02-21 11:20:03 +05:30
D4rkCiph3r bb23c59f41 Merge branch 'redcanaryco:master' into patch-1 2023-02-21 11:19:45 +05:30
D4rkCiph3r b1303b68d2 Merge branch 'redcanaryco:master' into T1078.003 2023-02-21 11:18:30 +05:30
Atomic Red Team doc generator 7cfbdc1449 Generated docs from job=generate-docs branch=master [ci skip] 2023-02-21 04:36:32 +00:00
Nathan McNulty 41393c010f Fix T1543.001 Test 2 Defaults (#2338)
Co-authored-by: Nathan McNulty <nathanmcnulty@outlook.com>
2023-02-20 21:35:11 -07:00
biot-2131 bdb575c823 T1110.001 updated two tests 2023-02-18 09:43:35 +00:00
D4rkCiph3r 6cd755321b Update T1070.002.yaml
Minor modifications
2023-02-18 14:07:34 +05:30
D4rkCiph3r 2f1c0e9f76 Update T1070.002.yaml 2023-02-18 13:18:46 +05:30
D4rkCiph3r b1bda776fe Update T1070.002.yaml
New tests added:
1. Delete system log files using unlink utility
2. Delete system log files using shred utility
3. Delete system log files using srm utility
4. Delete system log files using OSAScript
5. Delete system log files using Applescript
6. Delete system log files using JXA
7. System log file deletion using Cocoa API - 1
8. System log file deletion using Cocoa API - 2

Minor modifications to "System log file deletion using find utility"

The scripts will be available in "src" location
2023-02-18 12:55:58 +05:30
D4rkCiph3r 024d22c960 Added new tests (T562) - macOS
New tests added:
1. Disable journal logging
2. Disable journal logging via journald.conf

The man pages of the respective utilities can be referred
2023-02-18 11:19:56 +05:30
D4rkCiph3r 70fde6a40f Added new tests - T1070.002 (macOS and Linux)
New tests added:

Delete log files using built-in log utility
Truncate system log files
Delete log files by appending null bytes
System log file deletion using find utility
Delete system logs using syslog utility
Overwrite macOS system log using echo utility
Real-time system log clearance/deletion
Delete system journal logs
The man pages of respective utilities can be referred for the same
2023-02-18 10:41:11 +05:30
D4rkCiph3r 9184e421e9 Added new test case - T1027.001
Added a new test case.
Minor changes to the existing test case.
2023-02-17 18:19:33 +05:30
Atomic Red Team doc generator 3da64960cd Generated docs from job=generate-docs branch=master [ci skip] 2023-02-16 16:27:28 +00:00
Atomic Red Team GUID generator 018ecb6ee7 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-02-16 16:27:08 +00:00
Jose Enrique Hernandez c5cf8ce6b3 Merge pull request #2316 from johnbrydon/T1614.001_add_sys_lang_test
T1614.001: Add discovery tests for linux
2023-02-16 11:26:35 -05:00