Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Added a new atomic to T1202 #2715

Merged
merged 16 commits into from
Mar 17, 2024
Merged

Added a new atomic to T1202 #2715

merged 16 commits into from
Mar 17, 2024

Conversation

NagaSivaGunturu
Copy link
Contributor

Details:
Added a new atomic to T1202, name of the atomic is "Arbitrary file download using the Notepad++ GUP.exe binary"

Testing:
Tested successfully in atomic lab locally

Copy link
Collaborator

@clr2of8 clr2of8 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Welcome, as this is your first contribution and we hope for more to come, please see some minor adjustment requests below:

  • We would like to see this added under T1105 Ingress Tool Transfer instead
  • Please mv GUP files from src into bin, since they are mostly binary files
  • Maybe change "Mention the directory where GUP.exe & it's dependecies exists exists" to "The directory where GUP.exe & it's dependecies exists"
  • The cleanup commands should be able to be rerun multiple times in a row without generating errors due to files already being deleted

@clr2of8 clr2of8 merged commit 91912fd into redcanaryco:master Mar 17, 2024
3 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants