Commit Graph

3654 Commits

Author SHA1 Message Date
Araveti Esanya Reddy d56bbda77a Merge branch 'master' into T1562.008-o365_exchange_audit_log_disabled 2022-03-22 13:16:22 +05:30
CircleCI Atomic Red Team doc generator bd96789f31 Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-21 23:15:09 +00:00
CircleCI Atomic Red Team GUID generator 072ade0eb2 Generate GUIDs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-21 23:15:03 +00:00
Leo Verlod 86e1badb67 Adding T1218 Test 10 - Load DLL with Wuauclt (#1824)
* Create bin directory

* Add calc.dll

* Add Wuauclt dll loading

* prereq description wording update

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-03-21 17:14:36 -06:00
CircleCI Atomic Red Team doc generator 3259795ba5 Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-21 22:57:34 +00:00
frack113 e929fa518f Fix test 10 (#1823)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-03-21 16:56:59 -06:00
CircleCI Atomic Red Team doc generator 2e26916147 Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-21 22:34:50 +00:00
Carrie Roberts 30177c92f8 delete broken wce test (#1822) 2022-03-21 16:33:53 -06:00
CircleCI Atomic Red Team doc generator b4893d15ad Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-18 20:07:16 +00:00
CircleCI Atomic Red Team GUID generator 84a753eb23 Generate GUIDs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-18 20:07:11 +00:00
Sittikorn S 0b336ae498 Update T1112.yaml (#1821)
Modified Windows Powershell registry to disable Logging module.

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-03-18 14:06:40 -06:00
CircleCI Atomic Red Team doc generator de5e865929 Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-18 20:03:18 +00:00
frack113 c761e68ca0 NoTrayContextMenu fix (#1820) 2022-03-18 14:02:44 -06:00
CircleCI Atomic Red Team doc generator 7845416d3d Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-17 16:27:17 +00:00
CircleCI Atomic Red Team GUID generator d2c0df108e Generate GUIDs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-17 16:27:11 +00:00
tccontre da6f4250f3 Modify show compress color and tips in registry (#1819)
* Update T1112.yaml

* Update T1112.yaml

* typos

* Update T1112.yaml

* Update T1112.yaml

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-03-17 10:26:37 -06:00
CircleCI Atomic Red Team doc generator f6bb04b95f Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-17 16:25:32 +00:00
CircleCI Atomic Red Team GUID generator 6c5ba92a6b Generate GUIDs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-17 16:25:24 +00:00
tccontre b8066ba181 Disable system restore through registry (#1818)
* Update T1112.yaml

* Update T1112.yaml

* typos

* Update T1490.yaml

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-03-17 10:24:40 -06:00
CircleCI Atomic Red Team doc generator 288683be91 Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-17 16:23:47 +00:00
CircleCI Atomic Red Team GUID generator 3eadddf970 Generate GUIDs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-17 16:23:41 +00:00
tccontre 8d9cfa1fe5 Hide files through registry (#1816)
* Update T1112.yaml

* Update T1112.yaml

* typos

* Update T1564.001.yaml

* Update T1564.001.yaml

* typo

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-03-17 10:23:00 -06:00
CircleCI Atomic Red Team doc generator 1b6204cc23 Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-17 16:18:52 +00:00
frack113 3e65326cb9 Fix reg cleanup T1112 Test 9 (#1815)
* Fix reg cleanup

* ignore errors

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-03-17 10:18:06 -06:00
CircleCI Atomic Red Team doc generator 3906be5325 Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-16 19:30:30 +00:00
CircleCI Atomic Red Team GUID generator 1fd5dc6a51 Generate GUIDs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-16 19:30:25 +00:00
Bhavin Patel c67758383a Merge pull request #1800 from WojciechLesicki/master
Added a new atomic related to adding permission to the application.
2022-03-16 12:29:57 -07:00
Bhavin Patel 1d44ccac31 Merge branch 'master' into master 2022-03-16 12:28:22 -07:00
CircleCI Atomic Red Team doc generator 20df4c7262 Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-16 03:52:57 +00:00
CircleCI Atomic Red Team GUID generator 37f0539284 Generate GUIDs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-16 03:52:52 +00:00
CyberBilly7 08dd613bb0 systembc (#1814)
Co-authored-by: Chase James <cjames@nti.local>
2022-03-15 21:52:20 -06:00
CircleCI Atomic Red Team doc generator 924cb2491c Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-16 00:45:11 +00:00
CircleCI Atomic Red Team GUID generator cbf89911c1 Generate GUIDs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-16 00:45:05 +00:00
tccontre 1cb8a5395b Disable Windows Notification And Some Group Policy Features. (#1813)
* Update T1112.yaml

* Update T1112.yaml

* typos

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-03-15 18:44:39 -06:00
CircleCI Atomic Red Team doc generator 341b5b1987 Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-16 00:32:47 +00:00
CircleCI Atomic Red Team GUID generator 6ac1e3a1a4 Generate GUIDs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-16 00:32:40 +00:00
Leo Verlod ba8f007cea Adding T1083 Test 5 - Simulating MAZE Directory Enumeration (#1812)
Adding T1083 Test 5 - Simulating MAZE Directory Enumeration. This test is designed to simulate the directory enumeration function used by MAZE ransomware (Windows).
2022-03-15 18:32:03 -06:00
CircleCI Atomic Red Team doc generator 12749d4ba6 Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-14 21:06:56 +00:00
CircleCI Atomic Red Team GUID generator b7425664a2 Generate GUIDs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-14 21:06:50 +00:00
Bhavin Patel 59e7e7bbe2 Merge pull request #1803 from esanyaCode/T1562.001-azure-defense-evasion-eventhub-deletion
Updated Azure Eventhub Deletion Scenario
2022-03-14 14:06:15 -07:00
Bhavin Patel 433d8a29e0 Merge branch 'master' into T1562.001-azure-defense-evasion-eventhub-deletion 2022-03-14 14:04:41 -07:00
CircleCI Atomic Red Team doc generator 6b82fe5136 Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-14 18:07:44 +00:00
CircleCI Atomic Red Team GUID generator 3ce01207ea Generate GUIDs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-14 18:07:38 +00:00
Tim Schulz 85ea448d3b Added procedural variation to include PowerShell execution and WMIC (#1801)
* Added procedural variation to include PowerShell execution and WMIC

* Removed empty GUID lines

* Changed wmic to only command_prompt instead of powershell and command_prompt

Co-authored-by: Tim Schulz <tim@scythe.io>
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-03-14 12:07:08 -06:00
Araveti Esanya Reddy 9dc726b495 updated as per review commets 2022-03-14 23:32:17 +05:30
CircleCI Atomic Red Team doc generator 052cae4391 Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-14 18:01:13 +00:00
CircleCI Atomic Red Team GUID generator e0a6429a77 Generate GUIDs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-14 18:01:07 +00:00
tccontre d83aada893 Disable Windows Features (#1811)
* Update T1112.yaml

* Update T1112.yaml

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2022-03-14 12:00:25 -06:00
CircleCI Atomic Red Team doc generator de8ceae8a6 Generate docs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-14 17:44:57 +00:00
CircleCI Atomic Red Team GUID generator 859404904a Generate GUIDs from job=generate_and_commit_guids_and_docs branch=master [skip ci] 2022-03-14 17:44:50 +00:00