Commit Graph

55 Commits

Author SHA1 Message Date
caseysmithrc 6b8d5e1bca yamlification 2018-05-24 17:59:15 -06:00
caseysmithrc fe502ed03c T1138 yamilze 2018-05-23 21:25:36 -06:00
caseysmithrc 50d41d2819 T1134 2018-05-17 05:13:48 -06:00
caseysmithrc 52a2c43a74 Update var for Win7 2018-05-16 15:05:57 -06:00
caseysmithrc a91570fc14 T1134 - Access Token Manipulation 2018-05-16 14:49:14 -06:00
caseysmithrc 87b9e66896 Fixing AllTheThings 2018-05-16 10:20:51 -06:00
caseysmithrc bd3170421e Merge pull request #135 from redcanaryco/yaml-spec
Proposed YAML spec and validation script
2018-05-09 18:29:49 -04:00
caseysmithrc 3bea351443 Update mshta.sct 2018-05-08 17:05:54 -06:00
caseysmithrc d8b7e75619 Update mshta.sct 2018-05-08 16:49:15 -06:00
caseysmithrc 9fe04531fe Update mshta.sct 2018-05-08 16:43:20 -06:00
caseysmithrc b320eb3949 Update mshta.sct 2018-05-08 16:42:13 -06:00
caseysmithrc 3df40194fd Update mshta.sct 2018-05-08 16:41:05 -06:00
Michael Haag ef53daad74 Merge pull request #134 from redcanaryco/atomic-dev-cs
Atomic dev cs
2018-05-07 16:21:30 -04:00
caseysmithrc cb7f4a7923 Fix 2018-05-07 14:20:16 -06:00
caseysmithrc 934bb78ea8 Fix 2018-05-07 14:18:51 -06:00
Michael Haag d508c3a71a SquiblyTwo
Adding SquiblyTwo
2018-05-01 15:29:42 -04:00
Michael Haag 7467e6aade Merge pull request #125 from redcanaryco/atomic-dev-cs
Hooking T1179
2018-04-25 13:10:18 -04:00
caseysmithrc 0ee8cfae2b Update AtomicSSLHook.cpp 2018-04-25 10:57:23 -06:00
caseysmithrc 4834b6928f Update AtomicSSLHook.cpp 2018-04-25 10:56:26 -06:00
caseysmithrc 191d95c26a Hooking T1179
Atomic Hooking Technqiue
2018-04-25 10:52:00 -06:00
Michael Haag 7ef84e4815 Credential_Access/Hooking 2018-04-24 10:17:42 -04:00
api0cradle 92ab19d773 Created T1191 and T1183, added technique to T1060 2018-04-17 11:58:38 +02:00
Brian Beyer 55d9b37b22 start yamlizing a bunch of techniques 2018-04-17 00:13:12 -07:00
caseysmithrc c5ed6a89f9 Update AtomicRedTeam.sct 2018-03-13 14:11:24 -06:00
Dan Bourke f5c852b834 add windows browser extension docs and payload 2018-02-26 13:14:07 +11:00
caseysmithrc af7be36230 Update Payload 2018-02-11 21:19:46 -07:00
caseysmithrc 3ac9834f38 mshta 2018-01-16 08:56:26 -07:00
caseysmithrc 1b087c7e2a Update Program.cs 2018-01-13 12:28:33 -07:00
atmathis dce29fd24d Add/Change Mac and All the Things cleanup
Created Mac/Credential_Access/Input_Prompt
Added AppleScript password prompt to Credential Access/Input Prompt
Cleanup Mac/Execution/AppleScript
Updated Mac Grid
Updated formatting on AllTheThings test.bat
2017-12-29 12:12:54 -05:00
caseysmithrc d266915612 Update All The Things 2017-12-20 15:39:07 -07:00
caseysmithrc 1d57ef77e0 Fix Shim References 2017-12-07 09:03:07 -07:00
caseysmithrc 67613f4a44 Context For Shims 2017-12-06 15:40:21 -07:00
caseysmithrc 809e2cb4b8 Fix Typo 2017-12-06 15:12:35 -07:00
caseysmithrc 7bec20d991 App Compat ReadMe 2017-12-06 15:11:56 -07:00
caseysmithrc 44611b8f3b Fix Instructions 2017-12-06 15:05:18 -07:00
caseysmithrc 14f2a68a96 Shim Test Files 2017-12-06 14:52:06 -07:00
caseysmithrc b8cd61afb4 Fix Casing 2017-12-01 13:04:29 -07:00
caseysmithrc 1804b97780 Updated All the Things 2017-11-30 08:54:10 -07:00
Michael Haag f47d9be70a Merge pull request #35 from redcanaryco/Protoss-Dev
Updated AllTheThings
2017-11-30 08:36:08 -07:00
caseysmithrc e4e892da8b Updated All The Things 2017-11-30 06:25:37 -07:00
caseysmithrc 5375477446 Updated AllTheThings Example 2017-11-30 06:08:27 -07:00
caseysmithrc 58426cd424 Merge pull request #29 from redcanaryco/dev-mh
Updated Formatting + System Service Discovery
2017-11-27 13:09:31 -07:00
Michael Haag f6bfcd4e52 Discovery.bat - add
Added sc.exe query line
2017-11-21 12:17:55 -08:00
caseysmithrc c3d870f399 Update AtomicService.cs 2017-11-19 07:54:51 -07:00
caseysmithrc f84a365a73 Update AtomicService.cs 2017-11-19 07:53:03 -07:00
caseysmithrc df59f2be24 Service Binary Code 2017-11-19 07:42:50 -07:00
caseysmithrc 24e2671f45 Added Invoke-Mimnikatz
Invoke-Mimikatz Locally
2017-11-13 15:06:40 -07:00
caseysmithrc c03b740553 update instructions
Update MHT To Doc Notes
2017-11-13 11:54:20 -07:00
caseysmithrc 4439c529ea Sample VBA
Sample VBA Downloader
2017-11-13 11:53:35 -07:00
Michael Haag d61e743c41 Discovery bat fix
Removed a basic thing and made it even more basic
2017-11-03 09:56:44 -07:00