Commit Graph

71 Commits

Author SHA1 Message Date
Ye Yint @ Rolan 0c20cf6541 updated link for Mitre April update 2018-04-16 17:21:05 +08:00
Ye Yint @ Rolan ccc9181745 update content for Mitre April update 2018-04-16 17:00:07 +08:00
Ye Yint @ Rolan 6fe6549019 update April TTP 2018-04-16 16:55:02 +08:00
Michael Haag 5078248ca1 Merge pull request #95 from TacoRocket/master
Added Screen Capture from Keylogger to Collection
2018-03-06 09:20:01 -06:00
Michael Haag e6622d0021 Updated title 2018-03-06 08:43:51 -06:00
ahogue-atlassian 3aa4c528d9 Merge branch 'master' into master 2018-03-06 09:05:52 +11:00
Colby Farley fd1e413566 Adds a method to detect when extended attributes are used to hide files and folders. 2018-03-01 16:11:28 -06:00
Chris Long 96ce9fbbbf Adding Mac rc.common persistence 2018-03-01 00:57:54 -08:00
JeremyNGalloway 75145a2766 updated readme with link to Credential_Access/Credentials_in_Files.md 2018-02-28 16:44:33 -06:00
JeremyNGalloway 21cdce9777 initial upload 2018-02-28 16:43:07 -06:00
Colby Farley a7ee6830f7 Removed PowerShell payload 2018-02-28 11:32:07 -06:00
Colby Farley dea84864fa Added screen capture discovery for Mac 2018-02-28 11:30:41 -06:00
Colby Farley ac4762e283 Changed filename and fixed remaining markdown issue 2018-02-27 12:30:32 -06:00
Colby Farley 28ac11f0a1 Should fix Markdown issue 2018-02-27 12:26:54 -06:00
Colby Farley 18a1a5521c Added a method to download and install PowerShell on Mac 2018-02-27 12:23:53 -06:00
Alexander Hogue 4353a6719e Merge branch 'master' of github.com:ahogue-atlassian/atomic-red-team 2018-02-27 14:26:46 +11:00
Alexander Hogue 1cdbdc51bf Move scripts to Payloads directory 2018-02-27 14:24:06 +11:00
Alexander Hogue 8613767ee0 Merge branch 'master' of github.com:redcanaryco/atomic-red-team 2018-02-27 14:17:30 +11:00
ahogue-atlassian fb99ca3f6f Merge branch 'master' into master 2018-02-27 14:04:13 +11:00
Dan Bourke 3e4ba89cf4 adding actually published extension details 2018-02-26 16:26:56 +11:00
Dan Bourke 24412945ce add instructions for Firefox 2018-02-26 15:16:12 +11:00
Dan Bourke e52c8a8980 finishing mac bits 2018-02-26 13:08:47 +11:00
Dan Bourke e99ab35460 can't markdown 2018-02-26 12:55:34 +11:00
Dan Bourke d203930a36 can't markdown 2018-02-26 12:54:52 +11:00
Dan Bourke 9d247c281d add a 'minimum viable malicious extension' payload + collection notes for Mac 2018-02-26 12:52:26 +11:00
ahogue-atlassian 1347bc88dd Merge branch 'master' into master 2018-02-26 09:49:23 +11:00
Alexander Hogue 1ea5a9aaa8 Add Custom C2 Protocol - Bitbucket Snippets 2018-02-22 13:47:47 +11:00
caseysmithrc ec226ab392 Merge pull request #85 from JeremyNGalloway/master
PR to add Logon_Scripts.md entry and update the Mac ReadMe.md to include links
2018-02-21 11:24:36 -07:00
caseysmithrc dcf4d09ce1 Merge pull request #84 from sdtyne/space_after_filename
Space after filename
2018-02-21 11:24:09 -07:00
JeremyNGalloway 14d31eba11 added Logon_Scripts.md link 2018-02-21 12:03:35 -06:00
JeremyNGalloway bb6265128b initial upload 2018-02-21 11:56:35 -06:00
Stuart Tyne f2b4008d28 Modifying space_after_filename to execute python hello world 2018-02-21 15:37:11 +11:00
Stuart Tyne 80c12f6c4e fixing typo in Space After Filename technique 2018-02-19 15:06:48 +11:00
Dan Bourke 258d7c83d5 fix formatting issue 2018-02-19 14:32:10 +11:00
Dan Bourke 1ad74772b7 mac and linux example setuid binary 2018-02-19 14:29:52 +11:00
Dan Bourke f2203aaf2b add probably-harmless c program 2018-02-19 13:57:07 +11:00
Stuart Tyne 5ba88dfa61 Adding Space After Filename technique 2018-02-19 10:42:31 +11:00
Stuart Tyne 172bee8a4c Adding Space After Filename technique 2018-02-19 10:38:02 +11:00
Stuart Tyne 396172559d Adding Space After Filename technique 2018-02-19 10:31:08 +11:00
Dan Bourke b73f61c5dc minor consistency edit 2018-02-13 14:39:08 +11:00
Dan Bourke 99db88ff0d add emond persistence mechanism 2018-02-13 14:36:59 +11:00
Michael Haag 5930ef5161 Update Exfiltration_Over_Alternative_Protocol.md 2018-02-08 06:53:06 -06:00
Dan Bourke b047c5575f update readme, update linux example path 2018-02-08 17:05:23 +11:00
Dan Bourke 809b85b2a2 add first pass at SSH exfiltration 2018-02-08 17:01:34 +11:00
Michael Haag 9a5128a7da Mac Matrix Update
Updated Mac Matrix and technique names
2018-01-16 11:00:21 -07:00
atmathis d0cf8c4542 Update Process Discovery
* Made a change to Process Discovery (added saving the output for exfil)
* Added Process Discovery to Linux and updated grid
2018-01-11 16:09:12 -05:00
atmathis 0e877849ef Fixing .bash_profile
* Removed commands not related to this technique, and replaced them
with legitimate ones.
* Added .bash_profile page to Mac
2018-01-11 15:54:20 -05:00
atmathis 9c9c27ddd1 Merge remote-tracking branch 'redcanaryco/master'
# Conflicts:
#	Mac/README.md
2018-01-11 09:58:01 -05:00
Michael Haag 29cf36761a Mac Discovery
Added many techniques to Discovery for Mac
2018-01-09 14:53:47 -07:00
Michael Haag c4bbef438a Mac Credential Access
Added two Credential Access
2018-01-09 10:01:11 -07:00