Commit Graph

4728 Commits

Author SHA1 Message Date
Atomic Red Team doc generator 95ec2d0ceb Generated docs from job=generate-docs branch=master [ci skip] 2023-01-10 12:42:35 +00:00
Carrie Roberts 5d6df77a52 add dll and prereqs (#2273)
Co-authored-by: Michael Haag <5632822+MHaggis@users.noreply.github.com>
2023-01-10 05:42:04 -07:00
tccontre 7c26b9aae0 Tccontre discovery winpeas (#2270)
* Update T1124.yaml

* Update T1033.yaml

* Update Discovery.bat

* Update Discovery.bat

* Update T1033.yaml

* Update T1033.yaml

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-01-09 19:06:02 -05:00
Atomic Red Team doc generator 9bffb46fb6 Generated docs from job=generate-docs branch=master [ci skip] 2023-01-10 00:05:06 +00:00
Dustin Lee 26aa15f7d6 Fix Octopus spelling in description (#2271)
s/Octupus/Octopus/

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-01-09 19:04:35 -05:00
Atomic Red Team doc generator 5a23718c06 Generated docs from job=generate-docs branch=master [ci skip] 2023-01-10 00:02:55 +00:00
Dustin Lee f4afd9ccf5 Minor grammatical updates (#2272)
Fixes the spelling of *indicator* and *launched*, plus adds a period to the end of the second sentence in the Word command shell description.

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-01-09 19:02:21 -05:00
Atomic Red Team doc generator 2a73961fcb Generated docs from job=generate-docs branch=master [ci skip] 2023-01-09 19:44:06 +00:00
Atomic Red Team GUID generator ab226f35ca Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-01-09 19:44:00 +00:00
Bhavin Patel 44dbb8635e Merge pull request #2255 from aman143kri/dockerdeploy
Added Deploying a docker
2023-01-09 11:43:25 -08:00
Bhavin Patel 1c43660731 Merge branch 'master' into dockerdeploy 2023-01-09 11:18:41 -08:00
Atomic Red Team doc generator 7ef99becc1 Generated docs from job=generate-docs branch=master [ci skip] 2023-01-06 16:51:39 +00:00
Atomic Red Team GUID generator 5f999af5ae Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-01-06 16:51:32 +00:00
Carrie Roberts b1124e01ae WLL, XLL and VBA Addin Atomics (#2268)
* new atomics

* cleanup stuff

* added prereq

* adding source code

* fix typo

* note testing of office versions

* remove copying file
2023-01-06 09:51:02 -07:00
Atomic Red Team doc generator 933ed73f43 Generated docs from job=generate-docs branch=master [ci skip] 2023-01-05 22:01:14 +00:00
Bhavin Patel f80e681ef3 Merge pull request #2252 from packetzero/patch-3
T1497.001 linux detect Virtualization - run both cmds
2023-01-05 14:00:34 -08:00
aman143kri c0769f5783 Rename atomics/T1610/Src/dockerfile to atomics/T1610/src/dockerfile 2023-01-06 03:14:43 +05:30
Bhavin Patel 78dd709e50 Merge branch 'master' into patch-3 2023-01-05 12:27:19 -08:00
Atomic Red Team doc generator c91b9c49a6 Generated docs from job=generate-docs branch=master [ci skip] 2023-01-05 20:15:55 +00:00
Bhavin Patel f82a189443 Update T1610.yaml
remove guid
2023-01-05 12:15:47 -08:00
Atomic Red Team GUID generator 06001ce6a0 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-01-05 20:15:47 +00:00
Bhavin Patel 095b56cdaa Merge pull request #2254 from aman143kri/featureaddition
Added docker testcase for docker exec in T1609.yaml
2023-01-05 12:14:59 -08:00
Bhavin Patel 6e09a8d6b7 Merge branch 'master' into featureaddition 2023-01-05 12:14:21 -08:00
Atomic Red Team doc generator fb6aba6a73 Generated docs from job=generate-docs branch=master [ci skip] 2023-01-05 19:25:21 +00:00
packetzero 32c65b84f2 cleanup 1110.001 4 SUDO brute debian (#2253)
* cleanup 1110.001 4 SUDO brute debian

* Add echo to have success exit status

Co-authored-by: Michael Haag <5632822+MHaggis@users.noreply.github.com>
2023-01-05 12:24:48 -07:00
Atomic Red Team doc generator 808ac9832d Generated docs from job=generate-docs branch=master [ci skip] 2023-01-05 18:17:13 +00:00
Atomic Red Team GUID generator 34a89d53e3 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-01-05 18:17:07 +00:00
packetzero 1a81100d17 Clean up T1546.005 linux TRAP (#2251)
Cleans up a few things:
 - rather than modifying current shell, launches new one with -c argument.  This makes it easy to test EXIT trap.
 - previous was doing `nohup sh echo-art-fish.sh | bash` in trap. no need for the pipe to bash now.
 - I separated the EXIT and SIGINT traps. otherwise, it's not possible to tell which trap(s) executed.
 - The previous SIGINT case required user to hit CTRL+C.  now it's automated using signal
 - added cleanup. 
Tested on macOS BigSur and Ubuntu 20.04

Co-authored-by: Michael Haag <5632822+MHaggis@users.noreply.github.com>
2023-01-05 11:16:34 -07:00
Atomic Red Team doc generator fc5e51dbb3 Generated docs from job=generate-docs branch=master [ci skip] 2023-01-05 18:15:22 +00:00
packetzero 3f4996c8ff T1082 list linux kernel modules - remove sudo (#2234)
* T1082 list linux kernel modules - remove sudo

Fix for #2233.  Remove unnecessary  `sudo` from T1082 "Linux list kernel modules" commands.  Add another mechanism to `cat /proc/modules`.

* change to grep proc modules

A little more interesting to grep the /proc/modules file rather than cat.

Co-authored-by: Michael Haag <5632822+MHaggis@users.noreply.github.com>
2023-01-05 11:14:50 -07:00
Atomic Red Team doc generator 2b239f16b3 Generated docs from job=generate-docs branch=master [ci skip] 2023-01-05 15:03:11 +00:00
Atomic Red Team GUID generator edace96a04 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-01-05 15:03:03 +00:00
Matt Graeber 2158af8265 Merge pull request #2267 from tvjust/t1114.003
Created email forwarding T1114.003
2023-01-05 10:02:32 -05:00
Justin Schoenfeld da583c45ff change forwarding domain 2023-01-05 10:01:19 -05:00
Justin Schoenfeld b1fc7ca9fe Update T1114.003.yaml 2023-01-05 09:44:00 -05:00
Justin Schoenfeld 52bf96f197 Implement option email forwarding address 2023-01-05 09:43:34 -05:00
aman143kri 11ccc35807 Removed auto_generated_guid
This was creating an error, hence removed
2023-01-05 08:33:06 +05:30
aman143kri 8ba658e520 Update T1610.yaml 2023-01-05 08:29:02 +05:30
Bhavin Patel d64905e2af Merge branch 'master' into featureaddition 2023-01-04 18:19:07 -08:00
Justin Schoenfeld 174ff319bb Update T1114.003.yaml 2023-01-04 16:46:20 -05:00
Justin Schoenfeld c09c0afbd9 Update T1114.003.yaml 2023-01-04 16:44:01 -05:00
Justin Schoenfeld 95a9c36019 Update T1114.003.yaml 2023-01-04 16:36:17 -05:00
Justin Schoenfeld ef832dc7aa Create T1114.003.yaml 2023-01-04 16:25:29 -05:00
Atomic Red Team doc generator eeefbccf77 Generated docs from job=generate-docs branch=master [ci skip] 2023-01-04 03:26:19 +00:00
Carrie Roberts 0ce94db3b3 bump nav version (#2261) 2023-01-03 22:25:44 -05:00
Atomic Red Team doc generator 703af1c830 Generated docs from job=generate-docs branch=master [ci skip] 2023-01-04 03:24:07 +00:00
çidem b0b413cc9d T1105 :: Correct remote_url, Change del to rm (#2265) 2023-01-03 22:23:39 -05:00
Atomic Red Team doc generator c2aca27df1 Generated docs from job=generate-docs branch=master [ci skip] 2023-01-04 03:19:27 +00:00
Atomic Red Team GUID generator b5dde3c8f2 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-01-04 03:19:21 +00:00
Michael Haag 6db82cba9c T1505.004 - IIS Components & T1562.002 - Disable HTTP logging (#2266) 2023-01-03 22:18:53 -05:00