Commit Graph

3850 Commits

Author SHA1 Message Date
Atomic Red Team GUID generator 5f77bdd0c5 Generate GUIDs from job=generate-docs branch=master [skip ci] 2022-05-06 04:43:39 +00:00
BlueDragon-01 073cc6134b Add LNK Atomic (#1924) 2022-05-05 22:43:15 -06:00
Atomic Red Team doc generator ffb8cda982 Generated docs from job=generate-docs branch=master [ci skip] 2022-05-01 05:11:40 +00:00
Atomic Red Team GUID generator 0bf889be40 Generate GUIDs from job=generate-docs branch=master [skip ci] 2022-05-01 05:11:34 +00:00
Jesse Moore 4e0018104e Challenge bounty-T1555.003 Linux Dump Creds Browser (#1917)
* For Challenge and cool Linux Browser cred dump T1555.003

* ChallengeBounty Linux Browser Creds Dump T1555.003 with Prompt
2022-04-30 23:11:02 -06:00
Atomic Red Team doc generator a5d645d806 Generated docs from job=generate-docs branch=master [ci skip] 2022-04-30 11:39:02 +00:00
frack113 2d2818d65f Fix all invalid char (#1914) 2022-04-30 05:38:32 -06:00
Atomic Red Team doc generator a6f3763249 Generated docs from job=generate-docs branch=master [ci skip] 2022-04-30 01:44:53 +00:00
Atomic Red Team GUID generator c99b1399ec Generate GUIDs from job=generate-docs branch=master [skip ci] 2022-04-30 01:44:47 +00:00
Jorge Orchilles e91928c7e1 Add Rundll32 with desk.cpl (#1912)
* Update T1218.011.yaml

Add Rundll32 with desk.cpl

* Update T1218.011.yaml

* Update T1218.011.yaml

* Update T1218.011.yaml

* Update T1218.011.yaml

* Update T1218.011.yaml
2022-04-29 19:44:18 -06:00
Atomic Red Team doc generator 09cef80231 Generated docs from job=generate-docs branch=master [ci skip] 2022-04-29 21:21:26 +00:00
Atomic Red Team GUID generator afa5987cd9 Generate GUIDs from job=generate-docs branch=master [skip ci] 2022-04-29 21:21:20 +00:00
Jorge Orchilles 19e2814e3c Adding System Language Discovery (#1906)
* Create T1553.005

* Create T1553.005.yaml

* Update T1553.005.yaml

* Update T1553.005.yaml

* Update T1553.005.yaml

* Update T1553.005.yaml

* Update T1553.005.yaml

* Update T1553.005.yaml

* Update T1553.005.yaml

* Updated T1553.005

* Merging

* Create T1614.001.yaml

* Update T1614.001.yaml

* Update T1614.001.yaml

* Update T1614.001.yaml

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-04-29 15:20:59 -06:00
Atomic Red Team doc generator a0c2520962 Generated docs from job=generate-docs branch=master [ci skip] 2022-04-29 21:19:24 +00:00
Atomic Red Team GUID generator 389f4d13f0 Generate GUIDs from job=generate-docs branch=master [skip ci] 2022-04-29 21:19:19 +00:00
tccontre 20e304c516 enumeration of active directory organization unit and root domain (#1907)
* Update T1112.yaml

* Update T1112.yaml

* typos

* Update T1087.002.yaml

* Update T1087.002.yaml

* Update T1087.002.yaml

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-04-29 15:18:53 -06:00
Atomic Red Team doc generator a082fb047a Generated docs from job=generate-docs branch=master [ci skip] 2022-04-29 21:06:05 +00:00
Atomic Red Team GUID generator 238ff5b80a Generate GUIDs from job=generate-docs branch=master [skip ci] 2022-04-29 21:06:00 +00:00
Mohammed Hassan 8b57f31fc4 Update T1007.yaml (#1909)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-04-29 15:05:33 -06:00
Adam Mashinchi 988675b98b Merge pull request #1911 from redcanaryco/testest
Empty-Commit
2022-04-29 09:36:04 -07:00
d1vious c4b6a04182 Empty-Commit 2022-04-29 12:35:00 -04:00
Atomic Red Team doc generator 8c3b3277a6 Generated docs from job=generate-docs branch=master [ci skip] 2022-04-28 01:42:41 +00:00
frack113 531dc622ef T1555.003 Test 8 Add python prereq (#1883)
* Add python prereq

* typo fix

Co-authored-by: Jose Enrique Hernandez <josehelps@gmail.com>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-04-27 19:42:11 -06:00
Atomic Red Team doc generator ab5e560865 Generated docs from job=generate-docs branch=master [ci skip] 2022-04-28 01:38:56 +00:00
Atomic Red Team GUID generator 3b7d1a9d19 Generate GUIDs from job=generate-docs branch=master [skip ci] 2022-04-28 01:38:52 +00:00
Rich5 da3488b3b7 Added Invoke-WMIExec Pass the Hash (#1896)
* Added Invoke-WMIExec Pass the Hash

* Update T1550.002.yaml

Updated with permanent link

Co-authored-by: Richard Kelley <richard.kelley@qomplx.com>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-04-27 19:38:25 -06:00
Atomic Red Team doc generator b194729422 Generated docs from job=generate-docs branch=master [ci skip] 2022-04-28 01:37:14 +00:00
Atomic Red Team GUID generator 22cfe0ad49 Generate GUIDs from job=generate-docs branch=master [skip ci] 2022-04-28 01:37:10 +00:00
Rich5 e51a12089e Added Crafting Active Directory silver tickets with mimikatz (#1897)
* Added Crafting Active Directory silver tickets with mimikatz

* Update T1558.002.yaml

Co-authored-by: Richard Kelley <richard.kelley@qomplx.com>
Co-authored-by: Jose Enrique Hernandez <josehelps@gmail.com>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-04-27 19:36:42 -06:00
Atomic Red Team doc generator 667cfa7daa Generated docs from job=generate-docs branch=master [ci skip] 2022-04-28 01:34:38 +00:00
Atomic Red Team GUID generator 96fb67db9f Generate GUIDs from job=generate-docs branch=master [skip ci] 2022-04-28 01:34:33 +00:00
Rich5 0edf9b8609 Added Injection SID-History with mimikatz (#1898)
* Added Injection SID-History with mimikatz

* Update T1134.005.yaml

Changed elevation_required to true

* remove guid

Co-authored-by: Richard Kelley <richard.kelley@qomplx.com>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-04-27 19:34:07 -06:00
Atomic Red Team doc generator dd97f407ad Generated docs from job=generate-docs branch=master [ci skip] 2022-04-28 01:22:28 +00:00
Atomic Red Team GUID generator 292fcfab98 Generate GUIDs from job=generate-docs branch=master [skip ci] 2022-04-28 01:22:24 +00:00
Rich5 53d54747ec Added Password Change on Directory Service Restore Mode (DSRM) Account (#1899)
* Added Password Change on Directory Service Restore Mode (DSRM) Account

* remove guid so unique one can be auto-assigned

Co-authored-by: Richard Kelley <richard.kelley@qomplx.com>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-04-27 19:21:55 -06:00
Atomic Red Team doc generator c7417ac40b Generated docs from job=generate-docs branch=master [ci skip] 2022-04-28 01:17:34 +00:00
Atomic Red Team GUID generator 04913e6441 Generate GUIDs from job=generate-docs branch=master [skip ci] 2022-04-28 01:17:28 +00:00
Leo Verlod 1e9f1a4c38 Adding T1539 Test 2 - Steal Chrome Cookies (#1901)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-04-27 19:17:03 -06:00
Atomic Red Team doc generator e406fe0a0f Generated docs from job=generate-docs branch=master [ci skip] 2022-04-28 01:16:26 +00:00
Jathan-McDaniel 4e7044e077 T1055.001 improvement (#1902)
Co-authored-by: McDaniel <jmcdan@NTI.local>
Co-authored-by: Jose Enrique Hernandez <josehelps@gmail.com>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-04-27 19:15:57 -06:00
Atomic Red Team doc generator 724cb3f50d Generated docs from job=generate-docs branch=master [ci skip] 2022-04-28 01:14:49 +00:00
Atomic Red Team GUID generator b196333caf Generate GUIDs from job=generate-docs branch=master [skip ci] 2022-04-28 01:14:45 +00:00
David McKennirey 0ddf5d32aa Add Atomic tests for disabling .NET ETW tracing (#1903)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-04-27 19:14:22 -06:00
Jose Enrique Hernandez d5dea0d03f minor adjustment to how workflows are triggered (#1905) 2022-04-27 19:13:33 -06:00
Atomic Red Team doc generator db4ca085fc Generated docs from job=generate-docs branch=master [ci skip] 2022-04-27 17:08:17 +00:00
Atomic Red Team GUID generator 94fb215b94 Generate GUIDs from job=generate-docs branch=master [skip ci] 2022-04-27 17:08:13 +00:00
zspadoni28 ac8cd38038 Adding T1562.006 Test Number 3 (#1900)
Adding test #3 to simulate the removal of the Powershell provider ETW telemetry source.
2022-04-27 11:07:43 -06:00
Atomic Red Team doc generator 7fa5d45acd Generated docs from job=generate-docs branch=master [ci skip] 2022-04-26 21:46:46 +00:00
Atomic Red Team GUID generator 00dd1f82a3 Generate GUIDs from job=generate-docs branch=master [skip ci] 2022-04-26 21:46:41 +00:00
Adam Mashinchi 7ab002b355 Merge pull request #1892 from jovial7/patch-4
Add new test
2022-04-26 14:46:16 -07:00