Commit Graph

91 Commits

Author SHA1 Message Date
Dan Bourke 24412945ce add instructions for Firefox 2018-02-26 15:16:12 +11:00
Dan Bourke f5c852b834 add windows browser extension docs and payload 2018-02-26 13:14:07 +11:00
Dan Bourke d1eaf4454d resolves #72 2018-02-13 14:46:47 +11:00
caseysmithrc af7be36230 Update Payload 2018-02-11 21:19:46 -07:00
Matthew Green ece7cf1537 Add_remote_task
Couple of additional inputs for testing remote task creation
2018-02-06 16:05:23 +11:00
Michael Haag 5e9b720ecf Windows Matrix
Added bitsadmin and cleanup
2018-01-16 11:51:16 -07:00
Michael Haag a5d7e40120 Mshta Add 2018-01-16 10:22:36 -07:00
Michael Haag 94f729c684 Merge branch 'master' into Haag 2018-01-16 10:22:25 -07:00
caseysmithrc 4c01f9eca6 mshta T1170 2018-01-16 10:19:15 -07:00
Michael Haag 382d6313a3 Windows Matrix Update
Windows Matrix update
+ also fixed Dir names/paths
2018-01-16 10:10:52 -07:00
Michael Haag 1cf1cdd279 Reactor Chain Reaction
Chain Reaction - Reactor
2018-01-16 08:59:22 -07:00
caseysmithrc 3ac9834f38 mshta 2018-01-16 08:56:26 -07:00
caseysmithrc 1b087c7e2a Update Program.cs 2018-01-13 12:28:33 -07:00
atmathis 89513673d7 Linux Discovery
* Added several Linux Discovery tactics and updated grid
2018-01-11 16:56:58 -05:00
atmathis 4cd236a438 Adding tree command to File and Directory Discovery
Added the “tree” command, which is useful at showing a “graphical”
hierarchy of files and folders on a drive.
2018-01-11 15:33:27 -05:00
Michael Haag 1499c4be3f Fixes
Updated and fixed some mistakes over time.
2018-01-11 11:00:46 -07:00
rahmatnurfauzi 9c8137a56a Update File_and_Directory_Discovery.md
Adding more commands taken from Waterbug/Turla
2018-01-11 17:12:09 +07:00
Michael Haag 29cf36761a Mac Discovery
Added many techniques to Discovery for Mac
2018-01-09 14:53:47 -07:00
Michael Haag 976b27a683 Merge branch 'master' into Haag 2018-01-02 14:54:44 -07:00
Michael Haag 6dea66bdec Defense Evastion
+ Added method to stop event logs
2018-01-02 14:54:21 -07:00
atmathis dce29fd24d Add/Change Mac and All the Things cleanup
Created Mac/Credential_Access/Input_Prompt
Added AppleScript password prompt to Credential Access/Input Prompt
Cleanup Mac/Execution/AppleScript
Updated Mac Grid
Updated formatting on AllTheThings test.bat
2017-12-29 12:12:54 -05:00
caseysmithrc d266915612 Update All The Things 2017-12-20 15:39:07 -07:00
Michael Haag 33d6b91220 Windows ReadMe
Fixed link
2017-12-13 10:26:48 -08:00
Michael Haag aee2840fd5 New Persistence
+ Office Application Startup
-- Added DDEAUTO and Dragon's Tail link
+ Registry Run Keys and Start Folder
-- Added a couple of items to make this interesting.
+Updated Windows Readme
2017-12-12 15:35:09 -08:00
caseysmithrc 8f95d8b119 Fix Typo 2017-12-07 09:21:59 -07:00
caseysmithrc 1d57ef77e0 Fix Shim References 2017-12-07 09:03:07 -07:00
Michael Haag fbce4cfb2d Merge pull request #42 from redcanaryco/Protoss-Dev
Context For Shims
2017-12-06 14:41:33 -08:00
caseysmithrc 67613f4a44 Context For Shims 2017-12-06 15:40:21 -07:00
caseysmithrc 4326601868 Merge pull request #41 from redcanaryco/Argonaut
Argonaut Chain Reaction + Updates to windows.md
2017-12-06 15:27:35 -07:00
caseysmithrc 809e2cb4b8 Fix Typo 2017-12-06 15:12:35 -07:00
caseysmithrc 7bec20d991 App Compat ReadMe 2017-12-06 15:11:56 -07:00
caseysmithrc 44611b8f3b Fix Instructions 2017-12-06 15:05:18 -07:00
caseysmithrc 14f2a68a96 Shim Test Files 2017-12-06 14:52:06 -07:00
Michael Haag 53694dc7d4 Windows ReadMe Fixes
+ Updated all Discovery files in previous PR.
+ Fixed Windows.md to match new files. All good now
2017-12-01 15:06:10 -08:00
caseysmithrc b8cd61afb4 Fix Casing 2017-12-01 13:04:29 -07:00
caseysmithrc 1804b97780 Updated All the Things 2017-11-30 08:54:10 -07:00
Michael Haag f47d9be70a Merge pull request #35 from redcanaryco/Protoss-Dev
Updated AllTheThings
2017-11-30 08:36:08 -07:00
caseysmithrc e4e892da8b Updated All The Things 2017-11-30 06:25:37 -07:00
caseysmithrc 5375477446 Updated AllTheThings Example 2017-11-30 06:08:27 -07:00
caseysmithrc 58426cd424 Merge pull request #29 from redcanaryco/dev-mh
Updated Formatting + System Service Discovery
2017-11-27 13:09:31 -07:00
Michael Haag 874b3cd787 Update README.md 2017-11-22 06:55:57 -08:00
Michael Haag f6bfcd4e52 Discovery.bat - add
Added sc.exe query line
2017-11-21 12:17:55 -08:00
Michael Haag c121d1539b Format Updates + System Service Discovery
+ Updated format to Discovery md files
+ Added System Service Discovery
2017-11-21 12:16:00 -08:00
caseysmithrc d851a275a6 Merge pull request #28 from redcanaryco/ChainReactions
Account Manipulation + Chain Reactions Names
2017-11-20 12:38:37 -07:00
Michael Haag bf35e2895e Update README.md 2017-11-20 11:37:27 -08:00
Michael Haag 8f42ea3fc4 Account Manipulation + Chain Reactions Names
Changed CR names
+ Fixed .md for Account manipulation
2017-11-20 11:34:34 -08:00
Michael Haag 253282bceb Format and edits
Modified the format and cleaned it up.
2017-11-20 11:27:50 -08:00
unbaiat 74c1c52bdb Create Account Manipulation 2017-11-20 20:18:03 +02:00
caseysmithrc c3d870f399 Update AtomicService.cs 2017-11-19 07:54:51 -07:00
caseysmithrc f84a365a73 Update AtomicService.cs 2017-11-19 07:53:03 -07:00