Commit Graph

268 Commits

Author SHA1 Message Date
Colby Farley 28ac11f0a1 Should fix Markdown issue 2018-02-27 12:26:54 -06:00
Colby Farley 18a1a5521c Added a method to download and install PowerShell on Mac 2018-02-27 12:23:53 -06:00
caseysmithrc d58a87f670 Merge pull request #91 from danbourke/browser_extension
Browser extension
2018-02-26 08:23:51 -07:00
caseysmithrc c3d8a53edf Merge pull request #90 from infosecn1nja/patch-6
Update README.md
2018-02-26 08:20:56 -07:00
caseysmithrc dc61cbb18e Merge pull request #89 from infosecn1nja/patch-5
Create Disabling_Security_Tools.md
2018-02-26 08:20:14 -07:00
Dan Bourke 3e4ba89cf4 adding actually published extension details 2018-02-26 16:26:56 +11:00
Dan Bourke 24412945ce add instructions for Firefox 2018-02-26 15:16:12 +11:00
Dan Bourke 5dc3e36666 typo in README.md 2018-02-26 13:16:16 +11:00
Dan Bourke f5c852b834 add windows browser extension docs and payload 2018-02-26 13:14:07 +11:00
Dan Bourke e4b8cdb9c2 add linux browser extension docs and payload 2018-02-26 13:13:39 +11:00
Dan Bourke e52c8a8980 finishing mac bits 2018-02-26 13:08:47 +11:00
Dan Bourke e99ab35460 can't markdown 2018-02-26 12:55:34 +11:00
Dan Bourke d203930a36 can't markdown 2018-02-26 12:54:52 +11:00
Dan Bourke d9f9154cdf Merge branch 'browser_extension' of github.com:danbourke/atomic-red-team into browser_extension 2018-02-26 12:53:09 +11:00
Dan Bourke 9d247c281d add a 'minimum viable malicious extension' payload + collection notes for Mac 2018-02-26 12:52:26 +11:00
Dan Bourke 5d20c6b6dc add a 'minimum viable malicious extension' payload + collection notes for Mac 2018-02-26 12:46:47 +11:00
rahmatnurfauzi 31a7a268f1 Update README.md 2018-02-25 17:04:36 +07:00
rahmatnurfauzi 82f4f6078b Create Disabling_Security_Tools.md 2018-02-25 17:01:31 +07:00
caseysmithrc 797ee54f1a Merge pull request #87 from ForensicITGuy/master
Added Linux Execution CLI Test CURL/WGET to bash
2018-02-22 13:12:05 -07:00
ForensicITGuy b86511e2a9 Added Linux Execution CLI Test CURL/WGET to bash 2018-02-22 00:45:59 -06:00
caseysmithrc ec226ab392 Merge pull request #85 from JeremyNGalloway/master
PR to add Logon_Scripts.md entry and update the Mac ReadMe.md to include links
2018-02-21 11:24:36 -07:00
caseysmithrc dcf4d09ce1 Merge pull request #84 from sdtyne/space_after_filename
Space after filename
2018-02-21 11:24:09 -07:00
JeremyNGalloway 14d31eba11 added Logon_Scripts.md link 2018-02-21 12:03:35 -06:00
JeremyNGalloway bb6265128b initial upload 2018-02-21 11:56:35 -06:00
Stuart Tyne f2b4008d28 Modifying space_after_filename to execute python hello world 2018-02-21 15:37:11 +11:00
Michael Haag 7089e48a7f Merge pull request #83 from atmathis/master
Atomic Stickers
2018-02-20 15:33:39 -06:00
atmathis ea5933e4c6 Stickers!
Adding note in Readme for contributors who would like cool Atomic
stickers.

Cc: @infosecn1nja, @2xyo, @pwndad, @unbaiat, @danbourke, @JimmyAstle
2018-02-20 16:31:29 -05:00
atmathis 1c6cacfcae Merge remote-tracking branch 'redcanaryco/master' 2018-02-20 16:14:17 -05:00
caseysmithrc d4dd7b931c Merge pull request #82 from danbourke/setuid
Privilege Escalation - Setuid - Mac and Linux
2018-02-20 07:58:10 -07:00
Michael Haag 75e3d08a72 Merge pull request #80 from atmathis/master
Mac Chain Reaction
2018-02-19 07:44:32 -06:00
Stuart Tyne 80c12f6c4e fixing typo in Space After Filename technique 2018-02-19 15:06:48 +11:00
Dan Bourke 258d7c83d5 fix formatting issue 2018-02-19 14:32:10 +11:00
Dan Bourke 1ad74772b7 mac and linux example setuid binary 2018-02-19 14:29:52 +11:00
Dan Bourke f2203aaf2b add probably-harmless c program 2018-02-19 13:57:07 +11:00
Stuart Tyne 5ba88dfa61 Adding Space After Filename technique 2018-02-19 10:42:31 +11:00
Stuart Tyne 172bee8a4c Adding Space After Filename technique 2018-02-19 10:38:02 +11:00
Stuart Tyne 396172559d Adding Space After Filename technique 2018-02-19 10:31:08 +11:00
atmathis 5e494127ac Add Ranged Chain Reaction (Mac/Linux)
Adding POSIX Chain Reaction that is platform aware and runs different
checks for each platform. Simulates Discovery, Collection, and
Exfiltration phases.
2018-02-15 17:53:13 -05:00
atmathis e9f6914998 Merge remote-tracking branch 'redcanaryco/master' 2018-02-15 17:51:56 -05:00
caseysmithrc 23e904b898 Merge pull request #79 from ForensicITGuy/master
Added ART tests for Linux signal trap functions
2018-02-13 14:25:58 -07:00
Tony M Lambert cba719ea81 Merge pull request #2 from ForensicITGuy/linux-goodness
Linux goodness
2018-02-13 15:14:54 -06:00
Tony M Lambert 03bcfd5c04 Delete Discovery.sh 2018-02-13 15:13:32 -06:00
Tony M Lambert 6e445c7d65 Merge pull request #1 from redcanaryco/master
Updating
2018-02-13 15:12:10 -06:00
Tony M Lambert bb5a0181f2 Adding Persistence and Execution tests for Trap 2018-02-13 15:10:47 -06:00
Michael Haag 5023dafa17 Merge pull request #78 from redcanaryco/Haag
Removing Detections
2018-02-13 11:53:00 -06:00
Michael Haag 60f7be8223 Removing Detections
Removing detections until further notice
2018-02-13 09:57:20 -06:00
caseysmithrc c75ac6abd5 Merge pull request #77 from redcanaryco/Haag
ARTifacts - Detections
2018-02-13 08:36:57 -07:00
Michael Haag 760b7ad679 Merge pull request #75 from danbourke/mac-persistence-emond
Mac persistence -  emond
2018-02-13 09:35:27 -06:00
Michael Haag 71789328c1 Merge pull request #76 from danbourke/72
resolves #72
2018-02-13 09:33:57 -06:00
Dan Bourke d1eaf4454d resolves #72 2018-02-13 14:46:47 +11:00