C-h4ck-0
|
e39a3af314
|
Update scp.yml
|
2022-11-14 12:36:40 +07:00 |
|
C-h4ck-0
|
519b5fcbd7
|
Update scp.yml
Added a copy functionality
|
2022-11-14 12:33:41 +07:00 |
|
C-h4ck-0
|
ac294b0e97
|
Merge pull request #2 from LOLBAS-Project/master
Merge LOLBAS-project
|
2022-11-14 12:29:05 +07:00 |
|
C-h4ck-0
|
354553efa3
|
Update scp.yml
Added upload functionality
|
2022-11-14 12:04:58 +07:00 |
|
Michał Kucharski
|
8452c1ca96
|
Update eventvwr.yml with Execute part (#252)
* Update eventvwr.yml with Execute part
All things added based on https://twitter.com/orange_8361/status/1518970259868626944 and my re-tests.
* Update Eventvwr.yml
As asked by @bohops
* Update Eventvwr.yml
|
2022-11-13 14:56:32 -05:00 |
|
C-h4ck-0
|
613afe8ef5
|
Create scp.yml
Executor and Downloader
|
2022-11-13 20:50:14 +07:00 |
|
Nasreddine Bencherchali
|
0d7efb8ead
|
Adding and updating various LOLBINS (#229)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
|
2022-11-11 16:42:44 +00:00 |
|
C-h4ck-0
|
0c0e242481
|
Add Outlook.exe downloader
|
2022-11-08 21:53:10 +07:00 |
|
C-h4ck-0
|
8fafb02171
|
fix yaml-lint syntax error
|
2022-11-06 20:31:24 +07:00 |
|
C-h4ck-0
|
da86328865
|
Rename sftp to sftp.yml
|
2022-11-06 20:26:13 +07:00 |
|
C-h4ck-0
|
860246fe18
|
Add sftp.exe executor
c:\windows\system32\openssh\sftp.exe with the -D flag, is able to execute another exe file
|
2022-11-06 20:19:45 +07:00 |
|
Grzegorz Tworek
|
1587eeaf6c
|
Create Setres.yml (#262)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
|
2022-10-26 11:15:13 +01:00 |
|
Wietze
|
c20f388444
|
Fixing minor error in description of Explorer, closes #257
|
2022-10-26 09:14:27 +01:00 |
|
frack113
|
01d7580886
|
Add Sigma rule references to various LOLBAS (#260)
|
2022-10-26 09:10:39 +01:00 |
|
Jose Enrique Hernandez
|
5449be3e95
|
Merge pull request #186 from wietze/windows_11_sprint
Windows 11 sprint
|
2022-10-25 13:15:03 -04:00 |
|
Wietze
|
a0556744d1
|
Merge branch 'master' into windows_11_sprint
|
2022-10-04 15:45:57 +01:00 |
|
Wietze
|
6f2135e173
|
Updating category of fltMC to tamper
|
2022-10-04 15:37:56 +01:00 |
|
Daniel Santos
|
4217d0f8ca
|
Adding .NET Core binary createdump.exe (#240)
Co-authored-by: Daniel Santos <vovohelo@gmail.com>
Co-authored-by: Wietze <wietze@users.noreply.github.com>
|
2022-10-04 13:23:10 +01:00 |
|
securepeacock
|
461fbaf787
|
Update Powerpnt.yml with Sigma (#222)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
|
2022-10-04 12:36:49 +01:00 |
|
Wietze
|
76acca6f2b
|
Merge branch 'master' into windows_11_sprint
|
2022-10-04 12:31:31 +01:00 |
|
C-h4ck-0
|
f29471dde9
|
Adding download functionality entries to existing binaries (#239)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
|
2022-10-04 12:27:31 +01:00 |
|
C-h4ck-0
|
ea68ad824d
|
Adding 3 Microsoft Office-based downloaders (#238)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
|
2022-10-04 12:13:56 +01:00 |
|
Conor Richard
|
143a6639f8
|
Adding .gitattributes file, fixing template/checks (#253)
|
2022-10-04 11:50:59 +01:00 |
|
saulpanders
|
83ca9aa197
|
Adding Windows Package Manager tool winget.exe (#188)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
|
2022-10-04 11:27:47 +01:00 |
|
Wietze
|
67e1040172
|
Merge remote-tracking branch 'upstream/master' into windows_11_sprint
|
2022-10-03 16:18:57 +01:00 |
|
Conor Richard
|
da38f3d8ed
|
Merge pull request #185 from whickey-r7/patch-1
Create Unregmp2.yml
|
2022-09-17 21:38:59 -04:00 |
|
Conor Richard
|
a9e5707f74
|
Removing extra YAML record start "---"
|
2022-09-17 21:37:30 -04:00 |
|
Conor Richard
|
59808608e7
|
Merge pull request #180 from wietze/new/CustomShellHost
Adding CustomShellHost.exe LOLBAS
|
2022-09-17 21:34:04 -04:00 |
|
Conor Richard
|
05faad73b2
|
Removing extra YAML record start "---"
|
2022-09-17 21:32:13 -04:00 |
|
Conor Richard
|
c22d17a116
|
Merge pull request #176 from akat12/Ssh
Create Ssh
|
2022-09-17 21:25:49 -04:00 |
|
Conor Richard
|
14896a1436
|
Removed trailing space on line 3
|
2022-09-17 21:24:04 -04:00 |
|
Conor Richard
|
730359aa0d
|
Changed AWL MitreID and removed extra YAML record start "---"
|
2022-09-17 21:21:13 -04:00 |
|
Conor Richard
|
aa698337ff
|
Merge pull request #148 from elliotkillick/fsutil
Create fsutil.yml
|
2022-09-17 08:10:53 -04:00 |
|
Conor Richard
|
181672267b
|
Adding quotes since the ":" falls at the end to fix linting error
|
2022-09-17 08:09:27 -04:00 |
|
Conor Richard
|
4615fbc582
|
fixing indentation in line 14
|
2022-09-17 08:04:58 -04:00 |
|
Conor Richard
|
2759dd0565
|
Adding USN deletion that @bohops mentioned in #148 notes
|
2022-09-17 08:01:53 -04:00 |
|
Conor Richard
|
e878c66e6f
|
Cleaning YAML, updated new category Tamper
|
2022-09-17 07:55:16 -04:00 |
|
Conor Richard
|
f5c797a888
|
Merge pull request #147 from elliotkillick/DeviceCredentialDeployment
Create DeviceCredentialDeployment.yml
|
2022-09-17 07:52:29 -04:00 |
|
Conor Richard
|
7dd6ca24aa
|
Removing invalid MiterLink key.
|
2022-09-17 07:50:44 -04:00 |
|
Conor Richard
|
1e6d6d23cc
|
Removing extra document start "---" and updating category to Conceal.
|
2022-09-17 07:47:06 -04:00 |
|
Conor Richard
|
61043ccf0b
|
Merge pull request #245 from gtworek/patch-1
Create Ldifde.yml
|
2022-09-17 00:09:22 -04:00 |
|
Conor Richard
|
2689786b59
|
Update Ldifde.yml
Removed trailing spaces.
|
2022-09-17 00:06:25 -04:00 |
|
Conor Richard
|
9875eb2ed2
|
Update Ldifde.yml
Removed final "---". It does not match the current template and schema checks.
|
2022-09-17 00:03:20 -04:00 |
|
Conor Richard
|
2c9a7a97ce
|
Merge pull request #244 from 721574n/tristan_add
Added external reference about Rundll32
|
2022-09-16 23:46:43 -04:00 |
|
Conor Richard
|
4759886a5c
|
Merge pull request #241 from fslds/alias_introduction
Optional aliases introduction to YAML Template
|
2022-09-16 13:24:35 -04:00 |
|
fslds
|
37291b9035
|
Correcting the YML template to match validation.
|
2022-09-16 11:37:13 +00:00 |
|
Filipe Spencer
|
d780de4ece
|
Prep for new yamllint
|
2022-09-16 11:29:26 +00:00 |
|
Conor Richard
|
3347e43b3f
|
Merge branch 'master' into alias_introduction
|
2022-09-15 13:54:50 -04:00 |
|
Conor Richard
|
5e55bcb82e
|
Merge pull request #251 from xenoscr/master
YAML Linting & Schema Checks
|
2022-09-15 13:46:31 -04:00 |
|
xenoscr
|
033598bc77
|
Fixing indentation in YML-Schema.yml
|
2022-09-15 13:44:18 -04:00 |
|