caseysmithrc
|
7fea6fc22a
|
T1117 Cleanup/Fix
|
2018-09-03 08:54:04 -06:00 |
|
CircleCI Atomic Red Team doc generator
|
edf4a88498
|
Generate docs from job=validate_atomics_generate_docs branch=technique-fixup-cs
|
2018-09-03 04:26:30 +00:00 |
|
caseysmithrc
|
f48e47d408
|
updated T1050 ServiceCreate
|
2018-09-02 22:26:13 -06:00 |
|
CircleCI Atomic Red Team doc generator
|
5d5d8ffaf4
|
Generate docs from job=validate_atomics_generate_docs branch=technique-fixup-cs
|
2018-09-02 13:55:38 +00:00 |
|
caseysmithrc
|
b959a22cee
|
Merge branch 'technique-fixup-cs' of https://github.com/redcanaryco/atomic-red-team into technique-fixup-cs
|
2018-09-02 07:55:17 -06:00 |
|
caseysmithrc
|
50b9480bc9
|
PowerShell How to express
|
2018-09-02 07:55:09 -06:00 |
|
CircleCI Atomic Red Team doc generator
|
b463c42c72
|
Generate docs from job=validate_atomics_generate_docs branch=technique-fixup-cs
|
2018-09-02 13:32:38 +00:00 |
|
caseysmithrc
|
0c2d46bd83
|
Merge branch 'technique-fixup-cs' of https://github.com/redcanaryco/atomic-red-team into technique-fixup-cs
|
2018-09-02 07:32:21 -06:00 |
|
caseysmithrc
|
bdfb0c8e5b
|
typo
|
2018-09-02 07:32:15 -06:00 |
|
CircleCI Atomic Red Team doc generator
|
f3bbe748a5
|
Generate docs from job=validate_atomics_generate_docs branch=technique-fixup-cs
|
2018-09-02 13:26:08 +00:00 |
|
caseysmithrc
|
baca5415a1
|
use sc.exe explicitly
|
2018-09-02 07:25:50 -06:00 |
|
CircleCI Atomic Red Team doc generator
|
7ce58bc1db
|
Generate docs from job=validate_atomics_generate_docs branch=technique-fixup-cs
|
2018-09-02 13:24:14 +00:00 |
|
caseysmithrc
|
19bc330d2d
|
Fix T1050 Service Create
|
2018-09-02 07:23:53 -06:00 |
|
CircleCI Atomic Red Team doc generator
|
6149bc44bc
|
Generate docs from job=validate_atomics_generate_docs branch=technique-fixup-cs
|
2018-09-02 13:07:28 +00:00 |
|
caseysmithrc
|
c516e8663e
|
Fixed T1074 -
|
2018-09-02 07:07:09 -06:00 |
|
caseysmithrc
|
9c75b80c88
|
Merge pull request #320 from redcanaryco/Technique-fixing
Technique fixing
|
2018-08-31 06:41:48 -06:00 |
|
Michael Haag
|
567f729306
|
Merge branch 'Technique-fixing' of https://github.com/redcanaryco/atomic-red-team into Technique-fixing
|
2018-08-31 08:40:06 -04:00 |
|
Michael Haag
|
d67420b8ad
|
T1065 push
hope this is the final for #317
|
2018-08-31 08:40:03 -04:00 |
|
caseysmithrc
|
44c3ecdce2
|
Merge pull request #319 from redcanaryco/Technique-fixing
Final Fix
|
2018-08-31 06:22:02 -06:00 |
|
CircleCI Atomic Red Team doc generator
|
8f18ddfd93
|
Generate docs from job=validate_atomics_generate_docs branch=Technique-fixing
|
2018-08-31 12:17:43 +00:00 |
|
Michael Haag
|
e2cabd0cba
|
T1075 fix
final fix for #317
|
2018-08-31 08:17:28 -04:00 |
|
caseysmithrc
|
49472ba02a
|
Merge pull request #315 from redcanaryco/T1055-mh
T1055
|
2018-08-31 06:06:52 -06:00 |
|
caseysmithrc
|
95bf8450c2
|
Merge pull request #318 from redcanaryco/Technique-fixing
Technique fixing
|
2018-08-31 06:06:12 -06:00 |
|
CircleCI Atomic Red Team doc generator
|
d959144e14
|
Generate docs from job=validate_atomics_generate_docs branch=Technique-fixing
|
2018-08-31 12:03:07 +00:00 |
|
Michael Haag
|
2e45fc5d59
|
Issue 317 fixed
Finished #317
|
2018-08-31 08:02:51 -04:00 |
|
CircleCI Atomic Red Team doc generator
|
92d6e0663f
|
Generate docs from job=validate_atomics_generate_docs branch=Technique-fixing
|
2018-08-31 11:59:44 +00:00 |
|
Michael Haag
|
b2dda75932
|
Technique fixes
Fixed techniques per Issue #317
|
2018-08-31 07:59:05 -04:00 |
|
Zac Brown
|
7d8b526bd8
|
Merge pull request #316 from redcanaryco/users/zacbrown/fix-ruby-exec-filename-windows
Fix filenames created by ruby execution framework (go-atomic.rb)
|
2018-08-30 12:04:59 -07:00 |
|
Zac Brown
|
be2c99fb3a
|
Add a .gitignore to ignore generated files in this directory.
Signed-off-by: Zac Brown <zacbrown@users.noreply.github.com>
|
2018-08-30 11:42:14 -07:00 |
|
Zac Brown
|
511388ad2c
|
Fix issue using colons (:) in file paths on Windows. This syntax (colon) is used for alternative data streams (https://en.wikipedia.org/wiki/NTFS#Alternate_data_streams_.28ADS.29).
Signed-off-by: Zac Brown <zacbrown@users.noreply.github.com>
|
2018-08-30 11:40:35 -07:00 |
|
CircleCI Atomic Red Team doc generator
|
73caddcd1f
|
Generate docs from job=validate_atomics_generate_docs branch=T1055-mh
|
2018-08-30 18:19:59 +00:00 |
|
Michael Haag
|
eacf221901
|
Updated T1055
Added reference link for Incoke-DLLInjection
|
2018-08-30 14:19:45 -04:00 |
|
Michael Haag
|
754d9ac33a
|
Merge pull request #314 from redcanaryco/users/zacbrown/templates
Create issue and pull request templates.
|
2018-08-29 20:14:17 -04:00 |
|
Zac Brown
|
a7e8f17a35
|
Create issue and pull request templates.
Signed-off-by: Zac Brown <zacbrown@users.noreply.github.com>
|
2018-08-29 17:11:27 -07:00 |
|
CircleCI Atomic Red Team doc generator
|
7478f29dc3
|
Generate docs from job=validate_atomics_generate_docs branch=master
|
2018-08-29 03:08:56 +00:00 |
|
caseysmithrc
|
24a3f301a1
|
Merge branch 'master' of https://github.com/redcanaryco/atomic-red-team
|
2018-08-28 21:08:30 -06:00 |
|
caseysmithrc
|
a066585755
|
Revert "CapCom Driver Exploit Rootkit"
This reverts commit a732b873f4.
|
2018-08-28 21:08:22 -06:00 |
|
CircleCI Atomic Red Team doc generator
|
e40e3d9e0a
|
Generate docs from job=validate_atomics_generate_docs branch=master
|
2018-08-29 03:06:09 +00:00 |
|
caseysmithrc
|
a732b873f4
|
CapCom Driver Exploit Rootkit
|
2018-08-28 21:05:54 -06:00 |
|
CircleCI Atomic Red Team doc generator
|
abb3b58255
|
Generate docs from job=validate_atomics_generate_docs branch=master
|
2018-08-23 00:39:07 +00:00 |
|
Michael Haag
|
afe9f07a22
|
Merge pull request #307 from nikseetharaman/t1191-uacbypass
T1191 uacbypass
|
2018-08-22 20:38:47 -04:00 |
|
CircleCI Atomic Red Team doc generator
|
0b3543c2c1
|
Generate docs from job=validate_atomics_generate_docs branch=master
|
2018-08-23 00:37:54 +00:00 |
|
Michael Haag
|
7878afe96c
|
Merge pull request #301 from swelcher/T1069temp
Added Windows Group Enumeration
|
2018-08-22 20:37:37 -04:00 |
|
Michael Haag
|
534840b818
|
Merge pull request #310 from ForensicITGuy/fixReadme
Fix Quick Start and add a Slack Invite link
|
2018-08-22 20:36:04 -04:00 |
|
Tony M Lambert
|
af56b2e6af
|
Fix and add a link in README
Fix quick start link and add a link for Slack invitations
|
2018-08-22 18:36:20 -05:00 |
|
Keith McCammon
|
6f80c53eab
|
Merge pull request #308 from redcanaryco/example-ruby-execution-framework
Example ruby execution framework
|
2018-07-31 23:03:50 -06:00 |
|
Nik Seetharaman
|
ea477fa9e8
|
Fix t1191.yaml
|
2018-07-27 08:40:28 -05:00 |
|
Nik Seetharaman
|
dbae21ab77
|
Add test for T1191 UAC Bypass
|
2018-07-27 02:59:47 -05:00 |
|
CircleCI Atomic Red Team doc generator
|
58fc9342e4
|
Generate docs from job=validate_atomics_generate_docs branch=master
|
2018-07-26 22:31:58 +00:00 |
|
Austin Robertson
|
5cb3fed680
|
General YAML cleanup (#305)
* Fix string interpolation from ${foo} to #{foo} across all atomics
* remove non-ASCII characters from atomics YAML
* fix erroneous input_arguments
|
2018-07-26 16:31:50 -06:00 |
|