Dan Bourke
24412945ce
add instructions for Firefox
2018-02-26 15:16:12 +11:00
Dan Bourke
5dc3e36666
typo in README.md
2018-02-26 13:16:16 +11:00
Dan Bourke
f5c852b834
add windows browser extension docs and payload
2018-02-26 13:14:07 +11:00
Dan Bourke
e4b8cdb9c2
add linux browser extension docs and payload
2018-02-26 13:13:39 +11:00
Dan Bourke
e52c8a8980
finishing mac bits
2018-02-26 13:08:47 +11:00
Dan Bourke
e99ab35460
can't markdown
2018-02-26 12:55:34 +11:00
Dan Bourke
d203930a36
can't markdown
2018-02-26 12:54:52 +11:00
Dan Bourke
d9f9154cdf
Merge branch 'browser_extension' of github.com:danbourke/atomic-red-team into browser_extension
2018-02-26 12:53:09 +11:00
Dan Bourke
9d247c281d
add a 'minimum viable malicious extension' payload + collection notes for Mac
2018-02-26 12:52:26 +11:00
Dan Bourke
5d20c6b6dc
add a 'minimum viable malicious extension' payload + collection notes for Mac
2018-02-26 12:46:47 +11:00
caseysmithrc
797ee54f1a
Merge pull request #87 from ForensicITGuy/master
...
Added Linux Execution CLI Test CURL/WGET to bash
2018-02-22 13:12:05 -07:00
ForensicITGuy
b86511e2a9
Added Linux Execution CLI Test CURL/WGET to bash
2018-02-22 00:45:59 -06:00
caseysmithrc
ec226ab392
Merge pull request #85 from JeremyNGalloway/master
...
PR to add Logon_Scripts.md entry and update the Mac ReadMe.md to include links
2018-02-21 11:24:36 -07:00
caseysmithrc
dcf4d09ce1
Merge pull request #84 from sdtyne/space_after_filename
...
Space after filename
2018-02-21 11:24:09 -07:00
JeremyNGalloway
14d31eba11
added Logon_Scripts.md link
2018-02-21 12:03:35 -06:00
JeremyNGalloway
bb6265128b
initial upload
2018-02-21 11:56:35 -06:00
Stuart Tyne
f2b4008d28
Modifying space_after_filename to execute python hello world
2018-02-21 15:37:11 +11:00
Michael Haag
7089e48a7f
Merge pull request #83 from atmathis/master
...
Atomic Stickers
2018-02-20 15:33:39 -06:00
atmathis
ea5933e4c6
Stickers!
...
Adding note in Readme for contributors who would like cool Atomic
stickers.
Cc: @infosecn1nja, @2xyo, @pwndad, @unbaiat, @danbourke, @JimmyAstle
2018-02-20 16:31:29 -05:00
atmathis
1c6cacfcae
Merge remote-tracking branch 'redcanaryco/master'
2018-02-20 16:14:17 -05:00
caseysmithrc
d4dd7b931c
Merge pull request #82 from danbourke/setuid
...
Privilege Escalation - Setuid - Mac and Linux
2018-02-20 07:58:10 -07:00
Michael Haag
75e3d08a72
Merge pull request #80 from atmathis/master
...
Mac Chain Reaction
2018-02-19 07:44:32 -06:00
Stuart Tyne
80c12f6c4e
fixing typo in Space After Filename technique
2018-02-19 15:06:48 +11:00
Dan Bourke
258d7c83d5
fix formatting issue
2018-02-19 14:32:10 +11:00
Dan Bourke
1ad74772b7
mac and linux example setuid binary
2018-02-19 14:29:52 +11:00
Dan Bourke
f2203aaf2b
add probably-harmless c program
2018-02-19 13:57:07 +11:00
Stuart Tyne
5ba88dfa61
Adding Space After Filename technique
2018-02-19 10:42:31 +11:00
Stuart Tyne
172bee8a4c
Adding Space After Filename technique
2018-02-19 10:38:02 +11:00
Stuart Tyne
396172559d
Adding Space After Filename technique
2018-02-19 10:31:08 +11:00
atmathis
5e494127ac
Add Ranged Chain Reaction (Mac/Linux)
...
Adding POSIX Chain Reaction that is platform aware and runs different
checks for each platform. Simulates Discovery, Collection, and
Exfiltration phases.
2018-02-15 17:53:13 -05:00
atmathis
e9f6914998
Merge remote-tracking branch 'redcanaryco/master'
2018-02-15 17:51:56 -05:00
caseysmithrc
23e904b898
Merge pull request #79 from ForensicITGuy/master
...
Added ART tests for Linux signal trap functions
2018-02-13 14:25:58 -07:00
Tony M Lambert
cba719ea81
Merge pull request #2 from ForensicITGuy/linux-goodness
...
Linux goodness
2018-02-13 15:14:54 -06:00
Tony M Lambert
03bcfd5c04
Delete Discovery.sh
2018-02-13 15:13:32 -06:00
Tony M Lambert
6e445c7d65
Merge pull request #1 from redcanaryco/master
...
Updating
2018-02-13 15:12:10 -06:00
Tony M Lambert
bb5a0181f2
Adding Persistence and Execution tests for Trap
2018-02-13 15:10:47 -06:00
Michael Haag
5023dafa17
Merge pull request #78 from redcanaryco/Haag
...
Removing Detections
2018-02-13 11:53:00 -06:00
Michael Haag
60f7be8223
Removing Detections
...
Removing detections until further notice
2018-02-13 09:57:20 -06:00
caseysmithrc
c75ac6abd5
Merge pull request #77 from redcanaryco/Haag
...
ARTifacts - Detections
2018-02-13 08:36:57 -07:00
Michael Haag
760b7ad679
Merge pull request #75 from danbourke/mac-persistence-emond
...
Mac persistence - emond
2018-02-13 09:35:27 -06:00
Michael Haag
71789328c1
Merge pull request #76 from danbourke/72
...
resolves #72
2018-02-13 09:33:57 -06:00
Dan Bourke
d1eaf4454d
resolves #72
2018-02-13 14:46:47 +11:00
Dan Bourke
b73f61c5dc
minor consistency edit
2018-02-13 14:39:08 +11:00
Dan Bourke
99db88ff0d
add emond persistence mechanism
2018-02-13 14:36:59 +11:00
Michael Haag
6db90fe788
Merge pull request #74 from redcanaryco/atomic-dev-cs
...
Update Payload
2018-02-12 08:48:34 -06:00
caseysmithrc
af7be36230
Update Payload
2018-02-11 21:19:46 -07:00
Tony M Lambert
80bdcf5f10
Work in progress Linux discovery payload
2018-02-08 17:31:39 -06:00
caseysmithrc
e12345ed46
Merge pull request #73 from danbourke/mac-exfil
...
Mac/Linux SSH exfil
2018-02-08 06:09:21 -07:00
Michael Haag
5930ef5161
Update Exfiltration_Over_Alternative_Protocol.md
2018-02-08 06:53:06 -06:00
Michael Haag
7dbbb68677
Update Exfiltration_Over_Alternative_Protocol.md
2018-02-08 06:52:43 -06:00