Invoke-AtomicRedTeam
2.1.0
A PowerShell module that runs Atomic Red Team tests from yaml definition files.
Minimum PowerShell version
5.0
Installation Options
Owners
Copyright
(c) 2021 Red Canary. All rights reserved.
Package Details
Author(s)
- Casey Smith @subTee Josh Rickard @MSAdministrator Carrie Roberts @OrOneEqualsOne Matt Graeber @mattifestation
Tags
Functions
Invoke-AtomicTest Get-AtomicTechnique New-AtomicTechnique New-AtomicTest New-AtomicTestInputArgument New-AtomicTestDependency Start-AtomicGUI Stop-AtomicGUI Invoke-SetupAtomicRunner Invoke-GenerateNewSchedule Invoke-RefreshExistingSchedule Invoke-AtomicRunner Get-Schedule Invoke-KickoffAtomicRunner Get-PreferredIPAddress
Dependencies
Release Notes
1.0.2
-----
* Add support for custom execution loggers
1.0.1
-----
* Adding 'powershell-yaml' to RequiredModules in the module manifest
1.0.0
-----
* Initial release for submission to the PowerShell Gallery
FileList
- Invoke-AtomicRedTeam.nuspec
- docker\Dockerfile
- Private\Write-PrereqResults.ps1
- Public\config.ps1
- LICENSE.txt
- Private\Invoke-CheckPrereqs.ps1
- Private\Get-TargetInfo.ps1
- Public\Default-ExecutionLogger.psm1
- Invoke-AtomicRedTeam.psm1
- Private\Show-Details.ps1
- sandbox\setupsandbox.ps1
- Public\Get-PreferredIPAddress.ps1
- CODE_OF_CONDUCT.md
- Private\Replace-InputArgs.ps1
- sandbox\art.wsb
- Public\Invoke-FetchFromZip.ps1
- PSScriptAnalyzerSettings.psd1
- Private\Invoke-Process.ps1
- Public\New-Atomic.ps1
- Public\WinEvent-ExecutionLogger.psm1
- README.md
- Private\AtomicClassSchema.ps1
- Public\Invoke-AtomicTest.ps1
- Public\Invoke-KickoffAtomicRunner.ps1
- Invoke-AtomicRedTeam.psd1
- Private\Write-KeyValue.ps1
- Public\Syslog-ExecutionLogger.psm1
- Public\Attire-ExecutionLogger.psm1
- install-atomicsfolder.ps1
- Private\Invoke-KillProcessTree.ps1
- Public\Get-AtomicTechnique.ps1
- Public\Invoke-RunnerScheduleMethods.ps1
- install-atomicredteam.ps1
- Private\Get-PrereqExecutor.ps1
- Public\Start-AtomicGUI.ps1
- Public\Invoke-AtomicRunner.ps1
- kubernetes\k8s-deployment.yaml
- Private\Invoke-ExecuteCommand.ps1
- Public\Invoke-WebRequestVerifyHash.ps1
- Public\Invoke-SetupAtomicRunner.ps1
- docker\setup.ps1