invoke-atomicredteam
Invoke-AtomicRedTeam is a PowerShell module to execute tests as defined in the [atomics folder](https://github.com/redcanaryco/atomic-red-team/tree/master/atomics) of Red Canary's Atomic Red Team project. (by redcanaryco)
ThreatSim
Threat Simulator for Enterprise Networks (by joeavanzato)
invoke-atomicredteam | ThreatSim | |
---|---|---|
5 | 2 | |
767 | 11 | |
1.6% | - | |
8.3 | 10.0 | |
5 days ago | almost 2 years ago | |
PowerShell | Python | |
MIT License | MIT License |
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
invoke-atomicredteam
Posts with mentions or reviews of invoke-atomicredteam.
We have used some of these posts to build our list of alternatives
and similar projects. The last one was on 2023-05-26.
-
Lack of Detections
Or if you want something with more features - use Atomic Red Team tests (https://github.com/redcanaryco/invoke-atomicredteam)
-
EDR Attack Simulation
Also, if you want to use Atomic Red Team (which you should), look towards https://github.com/redcanaryco/invoke-atomicredteam, a framework for automating usage of tests through that.
-
Cyber incident simulation script
powershell-based - https://github.com/redcanaryco/invoke-atomicredteam
-
Anyone have experience building a Windows AD lab environment in Docker?
However, I've been tinkering with this for a few days now without success so far. I'm running into bugs and also am simply uncertain whether this is even viable. For example, I don't know if the Windows images offered for Docker will support the commands run by the PowerShell testing suite we have in mind for simulating threats, Invoke-AtomicRedTeam. Theoretically, everything should work fine. I'm also curious if someone else has already done this and published setup scripts or anything to help.
- Best way to test an AV/EDR Solution
ThreatSim
Posts with mentions or reviews of ThreatSim.
We have used some of these posts to build our list of alternatives
and similar projects. The last one was on 2023-05-26.
-
Lack of Detections
I wrote one for this exact purpose a while ago (https://github.com/joeavanzato/ThreatSim)
-
EDR Attack Simulation
Self promotion, but I wrote a tool for doing this in one of my previous positions : https://github.com/joeavanzato/ThreatSim
What are some alternatives?
When comparing invoke-atomicredteam and ThreatSim you can also consider the following projects:
APTSimulator - A toolset to make a system look as if it was the victim of an APT attack
EDR-Telemetry - This project aims to compare and evaluate the telemetry of various EDR products.
PurpleCloud - A little tool to play with Azure Identity - Azure Active Directory lab creation tool
atomic-red-team - Small and highly portable detection tests based on MITRE's ATT&CK.
jupyter2kibana - A Workflow for Data Scientists to bring Jupyter Notebook Visualizations to Kibana Dashboards
ansible-pentest-deploy - Using Ansible as an orchestrator, this project is another solution for testers looking to configure and deploy a new VM or VPS box with the tools that they need for penetration testing.
cli - The Docker CLI
invoke-atomicredteam vs APTSimulator
ThreatSim vs EDR-Telemetry
invoke-atomicredteam vs PurpleCloud
ThreatSim vs atomic-red-team
invoke-atomicredteam vs jupyter2kibana
ThreatSim vs APTSimulator
invoke-atomicredteam vs ansible-pentest-deploy
invoke-atomicredteam vs cli
invoke-atomicredteam vs EDR-Telemetry
invoke-atomicredteam vs atomic-red-team