mirror of
https://github.com/LOLBAS-Project/LOLBAS
synced 2025-05-09 23:04:09 +02:00
Updates for ATT&CK v17
This commit is contained in:
parent
7dbdad68e9
commit
e15a9c3e27
@ -9,7 +9,7 @@ Commands:
|
|||||||
Usecase: Reverse PowerShell session over MS provided infrastructure.
|
Usecase: Reverse PowerShell session over MS provided infrastructure.
|
||||||
Category: Execute
|
Category: Execute
|
||||||
Privileges: User
|
Privileges: User
|
||||||
MitreID: T1219
|
MitreID: T1219.001
|
||||||
OperatingSystem: Windows 10, Windows 11
|
OperatingSystem: Windows 10, Windows 11
|
||||||
Full_Path:
|
Full_Path:
|
||||||
- Path: 'C:\Users\<username>\AppData\Local\Programs\Microsoft VS Code\Code.exe'
|
- Path: 'C:\Users\<username>\AppData\Local\Programs\Microsoft VS Code\Code.exe'
|
||||||
|
@ -9,7 +9,7 @@ Commands:
|
|||||||
Usecase: Use binary to bypass Application whitelisting
|
Usecase: Use binary to bypass Application whitelisting
|
||||||
Category: AWL Bypass
|
Category: AWL Bypass
|
||||||
Privileges: User
|
Privileges: User
|
||||||
MitreID: T1127
|
MitreID: T1127.002
|
||||||
OperatingSystem: Windows vista, Windows 7, Windows 8, Windows 8.1, Windows 10, Windows 11
|
OperatingSystem: Windows vista, Windows 7, Windows 8, Windows 8.1, Windows 10, Windows 11
|
||||||
Tags:
|
Tags:
|
||||||
- Execute: ClickOnce
|
- Execute: ClickOnce
|
||||||
|
@ -9,7 +9,7 @@ Commands:
|
|||||||
Usecase: Use binary to bypass Application whitelisting
|
Usecase: Use binary to bypass Application whitelisting
|
||||||
Category: AWL Bypass
|
Category: AWL Bypass
|
||||||
Privileges: User
|
Privileges: User
|
||||||
MitreID: T1127
|
MitreID: T1127.002
|
||||||
OperatingSystem: Windows Vista, Windows 7, Windows 8, Windows 8.1, Windows 10, Windows 11
|
OperatingSystem: Windows Vista, Windows 7, Windows 8, Windows 8.1, Windows 10, Windows 11
|
||||||
Tags:
|
Tags:
|
||||||
- Execute: ClickOnce
|
- Execute: ClickOnce
|
||||||
|
Loading…
x
Reference in New Issue
Block a user