Files
atomic-red-team/execution-frameworks

Atomic Red Team Execution Frameworks

This repository contains execution frameworks that help you run Atomic Tests in your environment. Each atomic test is defined in the atomics folder inside their respective Mitre Att&ck T# folders. Within each T# folder you will find a yaml file that defines the commands to be run during the test and an easier to read markdown (md) of the same thing. Here is an example markdown file describing some of the tests that can be run using one of the below execution frameworks.

Invoke-AtomicRedTeam

Invoke-AtomicRedTeam is written in PowerShell, which can be used cross-platform, but currently only supports the powershell and command_prompt executors (Windows stuff). For detailed installation and usage instructions refer to the README file inside of the Invoke-AtomicRedTeam folder.

Python

Surprise, this framework is written in Python. For detailed installation and usage instructions refer to the README file inside of the contrib/python folder.

Ruby

Ruby version of the execution framework.