Ahmed Shawky
54a84b8640
Make sure WinDefend service is not running when uninstalling Windows-Defender and Windows-Defender-Features features.
2020-06-25 04:22:55 +04:00
Chris Long
ab5c0b2452
Standardize logging
2020-06-21 12:28:44 -07:00
Chris Long
c735f52934
Fixing the loop logic
2020-06-21 11:49:18 -07:00
Chris Long
ded6656cb7
Update operator
2020-06-21 09:16:50 -07:00
Chris Long
8fca376f4a
Merge branch 'master' into osquery_refactor
2020-06-20 18:34:28 -07:00
Chris Long
bb12246e74
Refactor osquery and add retry-loop for OU
2020-06-20 18:32:28 -07:00
Chris Long
9e6670b1e2
Update fix-windows-expiration.ps1
...
Add try/catch for the regex matching
2020-06-20 16:32:55 -07:00
Chris Long
2708f4fa4e
Update install-microsoft-ata.ps1
...
Add additional write-host statements
2020-06-15 00:53:35 -07:00
Chris Long
a033ea2b60
Update configure-ou.ps1
2020-06-14 17:53:06 -07:00
Chris Long
7f837cbb1d
Typos
2020-06-13 22:43:10 -07:00
Chris Long
1dbe8a75b2
Add a retry to configure-ou.ps1
2020-06-13 22:35:15 -07:00
Chris Long
dfa0a09d43
Update create-domain.ps1
2020-06-13 21:50:00 -07:00
Chris Long
f8cc4a9ec7
Update join-domain.ps1
2020-06-13 21:49:41 -07:00
Chris Long
add22be68b
Update create-domain.ps1
...
Don't change DNS settings for azure provisioning
2020-06-13 21:47:59 -07:00
Chris Long
69320e2b16
Update install-botsv3.sh
...
Add Splunk restart after app installation
2020-06-08 17:57:37 -07:00
Chris Long
7dc7e6916c
ESXi RAM Bump, osquery fixes
2020-06-01 22:51:14 -07:00
Chris Long
da366bcce6
Update install-microsoft-ata.ps1
2020-06-01 01:58:53 -07:00
Chris Long
9ddc914c95
Add BadBlood download to install-redteam.ps1
2020-06-01 01:40:54 -07:00
Chris Long
6312f4740b
Add Powershell script to resolve expiration issues
2020-05-19 00:26:19 -07:00
Chris Long
79a2a03b5c
Fixing retry logic in install-microsoft-ata.ps1
...
Fixes issue #444
2020-05-11 16:59:50 -07:00
Chris Long
ca515405a5
Update install-redteam.ps1
2020-05-10 12:51:32 -07:00
Chris Long
2659539afa
Update install-redteam.ps1
2020-05-09 12:41:52 -07:00
Chris Long
c8d6cf433d
Update install-redteam.ps1
2020-05-07 20:55:10 -07:00
Chris Long
614f3148e3
More Defender removal code
2020-05-07 14:07:21 -07:00
Chris Long
6de7ffa8d5
Reverting last update to install-redteam.ps1
2020-04-25 23:03:03 -07:00
Chris Long
3f12ac524a
Update install-redteam.ps1
2020-04-25 12:20:25 -07:00
Chris Long
7c0b8907db
Fix path for install-utilities.ps1
2020-04-17 22:02:29 -07:00
Chris Long
3fde431699
Small logger bugfixes
2020-04-14 13:29:58 -07:00
Chris Long
dbfa998ec2
Update install-windows_ta.ps1
2020-04-08 00:20:01 -07:00
Chris Long
c7e013558a
Resolving merge conflicts
2020-03-27 14:58:18 -07:00
Chris Long
34d8a39c43
Multiple bugfixes, add dashboard
2020-03-27 14:53:04 -07:00
Chris Long
6525456492
Update install-choco-extras.ps1
2020-03-25 22:46:55 -07:00
Chris Long
b2cf652fdc
Update install-utilities.ps1
2020-03-25 22:46:19 -07:00
Chris Long
242e1a7cf3
Adding a failover for the ISO download
2020-03-23 22:51:43 -07:00
Chris Long
5dcc9965d3
Add a wait for autoruns scheduled task
2020-03-23 17:27:57 -07:00
Ahmed Shawky
110fa56b5a
Disable defender RealtimeMonitoring when installing redteaming tools.
2020-03-15 16:42:26 +04:00
Ahmed Shawky
d4a9699cdd
Fix a typeo that stopped the Defender exclusions of \tools directory
2020-03-15 09:40:01 +04:00
Chris Long
068e9d8c05
Merge branch 'master' into ESXi
2020-03-09 14:46:54 -07:00
Chris Long
4e850a5ee6
Adding final ESXI deployment code
2020-03-09 14:42:58 -07:00
Chris Long
47d4696147
Update install-redteam.ps1
2020-03-09 00:49:32 -07:00
Chris Long
361b9b0b48
Adding exclusion folders to install-redteam.ps1
2020-03-07 23:11:44 -08:00
Chris Long
c630b88961
Removing reference to Invoke-AtomicRedTeam.psm1
...
Fixes https://github.com/clong/DetectionLab/issues/385
2020-03-07 20:02:25 -08:00
Chris Long
2bd2f20776
Merge branch 'master' into libvirt_provider
2020-02-17 14:45:09 -08:00
Ahmed Shawky
fea8f35f0e
Force powershell to use TLS 1.2 as chocolatey.org throws a TLS error
2020-02-05 02:47:03 +04:00
Selora
2a6cb92f51
Libvirt provider
...
Adding Packer Qemu builder:
* Packer/answer_files/*_virtio: Install the virtio drivers from the ISO (NOT provided)
* windows_*.json needs some manual tweaks to match the virtio drivers ISO path
Adding Vagrant-libvirt provider:
* Uses the QEMU qcow2 images provided by packer to build the DetectionLab
* Vagrantfile needs manual tweaking to match libvirt's host configuration (backing store, network interfaces, etc)
README:
* Added separate README with instructions for libvirt
2020-01-15 17:28:54 +00:00
Chris Long
b5c73ce647
Include Invoke-AtomicTest in Powershell
2019-12-20 23:46:35 -08:00
Chris Long
7e17727cbb
Logger bump to Ubuntu 18.04 & Migrate to Zeek
2019-12-20 15:48:13 -08:00
Chris Long
0393d627ad
Convert ADSI:Exists to Get-ADOrganizationalUnit
2019-12-04 18:49:28 -08:00
Chris Long
4a8485c28e
Disable IPv6 on Windows adapters
2019-12-04 13:45:43 -08:00
Chris Long
f64ff20aaf
Disabling default windows inputs. Adding powershell command for event channel perms
2019-12-04 11:27:35 -08:00