Commit Graph

6667 Commits

Author SHA1 Message Date
Shreya Malviya ada9237a8b
Merge pull request #1589 from guardicore/1537-constant-singleton-mutex-name
Remove custom singleton mutex name option
2021-11-16 11:49:02 +05:30
Shreya Malviya f90434d38d Chaneglog: Add entry for removing custom singleton mutex name config option 2021-11-16 11:34:14 +05:30
Shreya Malviya 57cc2ef64a UT: Remove custom singleton mutex name config option from UT sample config 2021-11-16 11:33:47 +05:30
Shreya Malviya 4c08bf1a62 Agent: Remove option for custom singleton mutex name and add it as a constant 2021-11-16 11:33:42 +05:30
Shreya Malviya bc08ebeebd Island: Remove config option for custom singleton mutex name 2021-11-16 11:30:54 +05:30
Mike Salvatore 6f4c671725 Agent: Remove unused NOP _banner_match() from HTTPFinder 2021-11-15 13:09:49 -05:00
ilija-lazoroski e0abe199f5
Merge pull request #1588 from guardicore/1537-try-to-move-first
1537 try to move dropper file first
2021-11-15 15:59:26 +01:00
Ilija Lazoroski de0fff9fbb Changelog: Remove checkbox to try move the dropper 2021-11-15 14:17:32 +01:00
Ilija Lazoroski fd4bcb88ea UT: Remove try to move dropper config 2021-11-15 14:15:42 +01:00
Ilija Lazoroski 8e4df65c2f Island: Remove checkbox to try move the dropper 2021-11-15 14:15:42 +01:00
Ilija Lazoroski 5162d973d7 Agent: Always try to move the dropper first 2021-11-15 14:15:40 +01:00
ilija-lazoroski 5c668505e6
Merge pull request #1587 from guardicore/1537-remove-serialize-config
1537 remove serialize config
2021-11-15 14:12:33 +01:00
Ilija Lazoroski cb06f408d4 Changelog: Remove serialize config 2021-11-15 13:36:21 +01:00
Ilija Lazoroski 159b27025d UT: Remove serialize config 2021-11-15 13:36:21 +01:00
Ilija Lazoroski 3b77c8af41 Island: Remove serialize config checkbox 2021-11-15 13:36:19 +01:00
ilija-lazoroski c6db7a6d27
Merge pull request #1586 from guardicore/1537-use-file-logging
1537 use file logging
2021-11-15 13:32:14 +01:00
Ilija Lazoroski 9aaf9956f9 Agent: Remove serialize config 2021-11-15 13:28:07 +01:00
Ilija Lazoroski 5073d1fe2b Changelog: Remove checkbox for file logging 2021-11-15 12:43:13 +01:00
Ilija Lazoroski 0699a2d379 UT: Remove file logging from config 2021-11-15 12:43:11 +01:00
Ilija Lazoroski 1c27fe870c Island: Remove checkbox for file logging 2021-11-15 12:41:59 +01:00
Ilija Lazoroski 8affca8490 Agent: Always use file logging 2021-11-15 12:32:38 +01:00
ilija-lazoroski 5f4a762cad
Merge pull request #1585 from guardicore/1537-delete-on-cleanup
1537 delete on cleanup
2021-11-15 12:29:34 +01:00
Ilija Lazoroski 43677d8edc UT: Remove self delete on cleanup 2021-11-15 12:13:18 +01:00
Ilija Lazoroski 0f2a86d672 Changelog: Remove checkbox for self deleting a monkey on cleanup 2021-11-15 12:13:16 +01:00
ilija-lazoroski be68d5b688
Merge pull request #1584 from guardicore/1537-send-log-to-server
1537 send log to server
2021-11-15 12:11:09 +01:00
Ilija Lazoroski 5030ea6266 Island: Remove checkbox for self deleting on cleanup 2021-11-15 12:06:36 +01:00
Ilija Lazoroski 51cb406123 Agent: Always self delete monkey on cleanup 2021-11-15 12:06:36 +01:00
VakarisZ 6ee1949d46
Merge pull request #1582 from guardicore/1535-netstat-info-collector-removal
1535 netstat info collector removal
2021-11-12 17:05:44 +02:00
Ilija Lazoroski 6e65bb4265 UT: Remove send log to server 2021-11-12 15:56:12 +01:00
Ilija Lazoroski bbe01778cf Changelog: Removed checkbox to send log to server 2021-11-12 15:56:11 +01:00
Ilija Lazoroski 00f4f19f99 Island: Remove checkbox to send log to server 2021-11-12 15:52:54 +01:00
Ilija Lazoroski c43cfe490c Agent: Always send log to server 2021-11-12 15:52:54 +01:00
Shreya Malviya 59e7ac34f7
Agent: Don't download exe on Linux during signed script PBA execution 2021-11-12 07:58:04 -05:00
Mike Salvatore 9f4bf71976
Merge pull request #1580 from guardicore/1577-timeout-backdoor-user-pba
Modify "Communicate as Backdoor User" PBA's HTTP requests
2021-11-12 07:56:23 -05:00
VakarisZ 435f52a658 Changelog: add entry about removed netstat collector 2021-11-12 14:09:07 +02:00
VakarisZ a451764a6f Island: fix ATT&CK report T1082 technique to display that at least data about Network interfaces was gathered. Otherwise the "Info gathered" column might be empty. 2021-11-12 11:52:21 +02:00
VakarisZ 9e3ac63090 Agent, Island: remove netstat collector and references 2021-11-12 11:18:23 +02:00
VakarisZ 9220cd2f5b Swimm: remove netstat system info collector references 2021-11-12 11:18:23 +02:00
Mike Salvatore 54519dc309 Docs: Add system resources section to FAQ 2021-11-11 09:25:01 -05:00
Shreya Malviya 9ee6049636 Changelog: Add entry for backdoor uer PBA's HTTP request modifications 2021-11-11 19:26:47 +05:30
Shreya Malviya 5bbd1c608f Agent: Modify backdoor user PBA's HTTP requests' timeout to 10 seconds 2021-11-11 19:19:59 +05:30
Shreya Malviya 4288063408 Agent: Modify backdoor user PBA's commands to request for headers only
when checking for internet connection
2021-11-11 19:09:45 +05:30
Mike Salvatore 8c4c0fc47c Project: Add .hugo_build.lock to .gitignore 2021-11-11 08:31:23 -05:00
Mike Salvatore 81fb015e6b
Merge pull request #1574 from guardicore/1567-sambacry-removal
1567 sambacry removal
2021-11-10 09:23:39 -05:00
VakarisZ f5c8db979f Project: remove remaining sambacry exploiter references in performance.py config template, vulture_allowlist.py and monkey_config_standard.json unit test data file 2021-11-10 15:44:05 +02:00
VakarisZ e618f0613d Changelog: add entry about the removed sambacry exploiter 2021-11-10 15:44:01 +02:00
VakarisZ 881800047b Island: remove sambacry exploiter code and related infrastructure/docs 2021-11-10 15:43:51 +02:00
VakarisZ 73188e78cc Agent: remove sambacry exploiter code and related infrastructure/docs 2021-11-10 15:43:51 +02:00
VakarisZ d6e397871f Deploy: remove sambacry binary download step from linux and windows deployment scripts 2021-11-10 15:43:51 +02:00
VakarisZ 67ea6c05ed Docs: remove sambacry exploiter documentation 2021-11-10 15:43:51 +02:00