Commit Graph

602 Commits

Author SHA1 Message Date
Brian Beyer ffb068994d can we pullquote 2018-05-10 14:13:35 -06:00
Brian Beyer a3e737b5b8 can we pullquote 2018-05-10 14:12:20 -06:00
Brian Beyer fe9972933d add header for separation 2018-05-10 14:11:34 -06:00
Brian Beyer b1951bb0fb missed a newline 2018-05-10 14:10:42 -06:00
Brian Beyer ec6ea1085f pull in attack stix 2018-05-10 14:10:12 -06:00
Brian Beyer 19936a38e3 that failed 2018-05-10 13:54:12 -06:00
Brian Beyer 15163f0147 a little more cleanup 2018-05-10 13:53:31 -06:00
Brian Beyer 32ca677186 a little more cleanup 2018-05-10 13:52:48 -06:00
Brian Beyer 261d8168c4 ok how about br 2018-05-10 13:52:05 -06:00
Brian Beyer 31ccf34c84 how about one slash 2018-05-10 13:51:37 -06:00
Brian Beyer 62e9fe559b how about no space 2018-05-10 13:51:05 -06:00
Brian Beyer 33c44c03d0 try this for newlines 2018-05-10 13:49:55 -06:00
Brian Beyer e127907eda add some spacing 2018-05-10 13:48:50 -06:00
Brian Beyer cc8823ab8e correctly render links 2018-05-10 13:45:18 -06:00
Brian Beyer 9de571eabc try adding # in front of anchor 2018-05-10 13:35:24 -06:00
Brian Beyer f5f1e0d2f4 new docs format 2018-05-10 13:32:31 -06:00
Brian Beyer 92de69a6d5 first cut of atomic docs generator 2018-05-10 13:26:34 -06:00
Brian Beyer fddf3ef5b4 first cut of atomic docs generator 2018-05-10 13:25:40 -06:00
Brian Beyer 7de95b67c1 Merge pull request #146 from redcanaryco/add-circle-ci-build
Add circle ci build
2018-05-10 12:42:48 -06:00
Brian Beyer 4635ab32ac small commit to trigger circle 2018-05-10 12:34:59 -06:00
Brian Beyer cc90e8f93f add circleci build 2018-05-10 12:31:37 -06:00
Brian Beyer e43605ca9f Add new_atomic.rb script that creates a new atomic tests file for a technique 2018-05-10 12:20:35 -06:00
Brian Beyer d26aa7dd34 bring all existing atomics in line with spec 2018-05-10 11:31:35 -06:00
caseysmithrc bd3170421e Merge pull request #135 from redcanaryco/yaml-spec
Proposed YAML spec and validation script
2018-05-09 18:29:49 -04:00
Brian Beyer c4fd716deb complete first pass of validator script 2018-05-08 17:21:33 -06:00
caseysmithrc 3bea351443 Update mshta.sct 2018-05-08 17:05:54 -06:00
caseysmithrc d8b7e75619 Update mshta.sct 2018-05-08 16:49:15 -06:00
caseysmithrc 9fe04531fe Update mshta.sct 2018-05-08 16:43:20 -06:00
caseysmithrc b320eb3949 Update mshta.sct 2018-05-08 16:42:13 -06:00
caseysmithrc 3df40194fd Update mshta.sct 2018-05-08 16:41:05 -06:00
Brian Beyer ccd3e9f10f update t1123 to be within spec 2018-05-08 15:15:27 -06:00
Brian Beyer b99f5f27f5 more docs on spec, add validation script 2018-05-08 15:14:02 -06:00
Brian Beyer 48d78ddd01 add first proposal of the YAML spec 2018-05-08 14:58:11 -06:00
Michael Haag ef53daad74 Merge pull request #134 from redcanaryco/atomic-dev-cs
Atomic dev cs
2018-05-07 16:21:30 -04:00
caseysmithrc cb7f4a7923 Fix 2018-05-07 14:20:16 -06:00
caseysmithrc 934bb78ea8 Fix 2018-05-07 14:18:51 -06:00
Michael Haag 63f495d984 Merge pull request #132 from JimmyAstle/wmi-event-sub-fix
minor syntax update
2018-05-07 16:13:12 -04:00
Michael Haag 796e750e8b Merge pull request #133 from redcanaryco/atomic-dev-cs
InstallUtil Test Update
2018-05-07 16:12:45 -04:00
caseysmithrc 3ebbb99a3a InstallUtil Test Update 2018-05-07 14:06:41 -06:00
Jimmy Astle b2ccaa911b minor syntax update
Just updating the syntax on the $filtertoconsumerargs
2018-05-07 15:43:40 -04:00
caseysmithrc a38ad6a815 Merge pull request #131 from redcanaryco/squiblytwo
Squiblytwo
2018-05-01 16:24:51 -04:00
Michael Haag d3c4cb1f69 SquiblyTwo - payload URL
payload URL added
2018-05-01 15:31:04 -04:00
Michael Haag d508c3a71a SquiblyTwo
Adding SquiblyTwo
2018-05-01 15:29:42 -04:00
Michael Haag c7fcab6533 Merge pull request #128 from redcanaryco/atomic-dev-cs
Merge branch 'master' into atomic-dev-cs
2018-04-25 13:46:11 -04:00
caseysmithrc ed9729de89 Merge branch 'master' into atomic-dev-cs
Fix Folder For Hooking
2018-04-25 11:44:09 -06:00
Michael Haag 0cd325f6de Merge pull request #126 from m0jtaba/patch-2
Update CMSTP.md
2018-04-25 13:38:48 -04:00
Mo 045a13030b Update CMSTP.md
Should it also be "Local:"?
2018-04-25 18:37:19 +01:00
Michael Haag 7467e6aade Merge pull request #125 from redcanaryco/atomic-dev-cs
Hooking T1179
2018-04-25 13:10:18 -04:00
Brian Beyer 81d84a4e26 make t1123 the example standard 2018-04-25 11:05:34 -06:00
caseysmithrc 0ee8cfae2b Update AtomicSSLHook.cpp 2018-04-25 10:57:23 -06:00