Defending enterprise networks against attackers continues to present a difficult challenge for blue teams. Prevention has fallen short; improving detection & response capabilities has proven to be a step in the right direction. However, without the telemetry produced by adversary behavior, building new and testing existing detection capabilities will be constrained.
PurpleSharp is an open source adversary simulation tool written in C# that executes adversary techniques within Windows Active Directory environments. The resulting telemetry can be leveraged to measure and improve the efficacy of a detection engineering program. PurpleSharp leverages the MITRE ATT&CK Framework and executes different techniques across the attack life cycle: execution, persistence, privilege escalation, credential access, lateral movement, etc. It currently supports 37 unique ATT&CK techniques.
PurpleSharp was first presented at Derbycon IX on September 2019.
An updated version was released on August 6th 2020 as part of BlackHat Arsenal 2020. If you want to jump straight to the demos:
Demo 1
Demo 2
Goals / Use Cases
The attack telemetry produced by simulating techniques with PurpleSharp aids detection teams in:
- Building new detecttion analytics
- Testing existing detection analytics
- Validating detection resiliency
- Identifying gaps in visibility
- Identifing issues with event logging pipeline
Quick Start Guide
PurpleSharp can be built with Visual Studio Community 2019 or 2020.
Documentation
https://purplesharp.readthedocs.io/
Authors
- Mauricio Velazco - @mvelazco
Acknowledgments
The community is a great source of ideas and feedback. Thank you all.
via KitPloit Related news
- Termux Hacking Tools 2019
- Hack Tools
- Wifi Hacker Tools For Windows
- Pentest Tools Framework
- Hacker Tools
- Hacking Tools For Windows 7
- Pentest Tools Open Source
- Pentest Tools Online
- Pentest Tools Windows
- Pentest Tools List
- Best Pentesting Tools 2018
- Pentest Tools Github
- Pentest Tools List
- World No 1 Hacker Software
- Hacker Tools 2020
- Easy Hack Tools
- Pentest Tools For Ubuntu
- Underground Hacker Sites
- Hack Tools 2019
- Hack Tools For Pc
- Hackers Toolbox
- Hacking Tools Github
- Pentest Tools Github
- Hack Tools For Ubuntu
- Hacking Tools Github
- Hacker Tools Hardware
- Hacker Tools Free
- Pentest Reporting Tools
- Hack Tools Online
- Hacking Tools Windows
- Hacking Tools Hardware
- Nsa Hack Tools
- Wifi Hacker Tools For Windows
- Android Hack Tools Github
- Hak5 Tools
- Hacker Tools For Pc
- Hacker Tools Windows
- Pentest Tools For Ubuntu
- Pentest Tools Url Fuzzer
- Pentest Tools Download
- Hacker Security Tools
- Hack Tools For Games
- Hacking Tools Software
- Pentest Tools Website Vulnerability
- Pentest Tools Windows
- Pentest Tools Find Subdomains
- Pentest Tools Website Vulnerability
- Nsa Hack Tools Download
- Hacker Tools Apk
- Pentest Tools Free
- Hacking Tools For Beginners
- Hacker Tools Free
- How To Make Hacking Tools
- Pentest Tools Port Scanner
- Game Hacking
- Install Pentest Tools Ubuntu
- Hacking Tools And Software
- Nsa Hack Tools Download
- Pentest Tools Subdomain
- Bluetooth Hacking Tools Kali
- Hack Tools Mac
- Hackrf Tools
- Install Pentest Tools Ubuntu
- Hackers Toolbox
- Hack Tools For Windows
- Hack Tools For Ubuntu
- Hack App
- Hacking Tools 2019
- Pentest Recon Tools
- Hacking Tools 2020
- Hacker Tools List
- Nsa Hack Tools
- Hack Tools
- Best Hacking Tools 2019
- Hacking Tools For Mac
- Hack Tools For Windows
- Pentest Tools Nmap
- Hacking Tools Free Download
- Nsa Hacker Tools
- Free Pentest Tools For Windows
- Hacker Tools Linux
- Tools 4 Hack
- Hacker Tools Windows
- Hacking App
- Hacking Tools Github
No comments:
Post a Comment