Commit Graph

618 Commits

Author SHA1 Message Date
C-h4ck-0
e39a3af314
Update scp.yml 2022-11-14 12:36:40 +07:00
C-h4ck-0
519b5fcbd7
Update scp.yml
Added a copy functionality
2022-11-14 12:33:41 +07:00
C-h4ck-0
ac294b0e97
Merge pull request #2 from LOLBAS-Project/master
Merge LOLBAS-project
2022-11-14 12:29:05 +07:00
C-h4ck-0
354553efa3
Update scp.yml
Added upload functionality
2022-11-14 12:04:58 +07:00
Michał Kucharski
8452c1ca96
Update eventvwr.yml with Execute part (#252)
* Update eventvwr.yml with Execute part

All things added based on https://twitter.com/orange_8361/status/1518970259868626944 and my re-tests.

* Update Eventvwr.yml

As asked by @bohops

* Update Eventvwr.yml
2022-11-13 14:56:32 -05:00
C-h4ck-0
613afe8ef5
Create scp.yml
Executor and Downloader
2022-11-13 20:50:14 +07:00
Nasreddine Bencherchali
0d7efb8ead
Adding and updating various LOLBINS (#229)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2022-11-11 16:42:44 +00:00
C-h4ck-0
0c0e242481
Add Outlook.exe downloader 2022-11-08 21:53:10 +07:00
C-h4ck-0
8fafb02171
fix yaml-lint syntax error 2022-11-06 20:31:24 +07:00
C-h4ck-0
da86328865
Rename sftp to sftp.yml 2022-11-06 20:26:13 +07:00
C-h4ck-0
860246fe18
Add sftp.exe executor
c:\windows\system32\openssh\sftp.exe with the -D flag, is able to execute another exe file
2022-11-06 20:19:45 +07:00
Grzegorz Tworek
1587eeaf6c
Create Setres.yml (#262)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2022-10-26 11:15:13 +01:00
Wietze
c20f388444
Fixing minor error in description of Explorer, closes #257 2022-10-26 09:14:27 +01:00
frack113
01d7580886
Add Sigma rule references to various LOLBAS (#260) 2022-10-26 09:10:39 +01:00
Jose Enrique Hernandez
5449be3e95
Merge pull request #186 from wietze/windows_11_sprint
Windows 11 sprint
2022-10-25 13:15:03 -04:00
Wietze
a0556744d1
Merge branch 'master' into windows_11_sprint 2022-10-04 15:45:57 +01:00
Wietze
6f2135e173
Updating category of fltMC to tamper 2022-10-04 15:37:56 +01:00
Daniel Santos
4217d0f8ca
Adding .NET Core binary createdump.exe (#240)
Co-authored-by: Daniel Santos <vovohelo@gmail.com>
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2022-10-04 13:23:10 +01:00
securepeacock
461fbaf787
Update Powerpnt.yml with Sigma (#222)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2022-10-04 12:36:49 +01:00
Wietze
76acca6f2b
Merge branch 'master' into windows_11_sprint 2022-10-04 12:31:31 +01:00
C-h4ck-0
f29471dde9
Adding download functionality entries to existing binaries (#239)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2022-10-04 12:27:31 +01:00
C-h4ck-0
ea68ad824d
Adding 3 Microsoft Office-based downloaders (#238)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2022-10-04 12:13:56 +01:00
Conor Richard
143a6639f8
Adding .gitattributes file, fixing template/checks (#253) 2022-10-04 11:50:59 +01:00
saulpanders
83ca9aa197
Adding Windows Package Manager tool winget.exe (#188)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2022-10-04 11:27:47 +01:00
Wietze
67e1040172
Merge remote-tracking branch 'upstream/master' into windows_11_sprint 2022-10-03 16:18:57 +01:00
Conor Richard
da38f3d8ed
Merge pull request #185 from whickey-r7/patch-1
Create Unregmp2.yml
2022-09-17 21:38:59 -04:00
Conor Richard
a9e5707f74
Removing extra YAML record start "---" 2022-09-17 21:37:30 -04:00
Conor Richard
59808608e7
Merge pull request #180 from wietze/new/CustomShellHost
Adding CustomShellHost.exe LOLBAS
2022-09-17 21:34:04 -04:00
Conor Richard
05faad73b2
Removing extra YAML record start "---" 2022-09-17 21:32:13 -04:00
Conor Richard
c22d17a116
Merge pull request #176 from akat12/Ssh
Create Ssh
2022-09-17 21:25:49 -04:00
Conor Richard
14896a1436
Removed trailing space on line 3 2022-09-17 21:24:04 -04:00
Conor Richard
730359aa0d
Changed AWL MitreID and removed extra YAML record start "---" 2022-09-17 21:21:13 -04:00
Conor Richard
aa698337ff
Merge pull request #148 from elliotkillick/fsutil
Create fsutil.yml
2022-09-17 08:10:53 -04:00
Conor Richard
181672267b
Adding quotes since the ":" falls at the end to fix linting error 2022-09-17 08:09:27 -04:00
Conor Richard
4615fbc582
fixing indentation in line 14 2022-09-17 08:04:58 -04:00
Conor Richard
2759dd0565
Adding USN deletion that @bohops mentioned in #148 notes 2022-09-17 08:01:53 -04:00
Conor Richard
e878c66e6f
Cleaning YAML, updated new category Tamper 2022-09-17 07:55:16 -04:00
Conor Richard
f5c797a888
Merge pull request #147 from elliotkillick/DeviceCredentialDeployment
Create DeviceCredentialDeployment.yml
2022-09-17 07:52:29 -04:00
Conor Richard
7dd6ca24aa
Removing invalid MiterLink key. 2022-09-17 07:50:44 -04:00
Conor Richard
1e6d6d23cc
Removing extra document start "---" and updating category to Conceal. 2022-09-17 07:47:06 -04:00
Conor Richard
61043ccf0b
Merge pull request #245 from gtworek/patch-1
Create Ldifde.yml
2022-09-17 00:09:22 -04:00
Conor Richard
2689786b59
Update Ldifde.yml
Removed trailing spaces.
2022-09-17 00:06:25 -04:00
Conor Richard
9875eb2ed2
Update Ldifde.yml
Removed final "---". It does not match the current template and schema checks.
2022-09-17 00:03:20 -04:00
Conor Richard
2c9a7a97ce
Merge pull request #244 from 721574n/tristan_add
Added external reference about Rundll32
2022-09-16 23:46:43 -04:00
Conor Richard
4759886a5c
Merge pull request #241 from fslds/alias_introduction
Optional aliases introduction to YAML Template
2022-09-16 13:24:35 -04:00
fslds
37291b9035
Correcting the YML template to match validation. 2022-09-16 11:37:13 +00:00
Filipe Spencer
d780de4ece Prep for new yamllint 2022-09-16 11:29:26 +00:00
Conor Richard
3347e43b3f
Merge branch 'master' into alias_introduction 2022-09-15 13:54:50 -04:00
Conor Richard
5e55bcb82e
Merge pull request #251 from xenoscr/master
YAML Linting & Schema Checks
2022-09-15 13:46:31 -04:00
xenoscr
033598bc77
Fixing indentation in YML-Schema.yml 2022-09-15 13:44:18 -04:00