redcanaryco / atomic-red-team

Small and highly portable detection tests based on MITRE's ATT&CK.
MIT License
9.56k stars 2.77k forks source link

T1048.002 #2851

Closed alphonsa-01 closed 2 months ago

alphonsa-01 commented 2 months ago

Details: Added 2 input arguments to T1048.002 test name - "Exfiltrate data as text over HTTPS" using wget and "Exfiltrate data in a file over HTTPS using wget". Gives us more flexibility to change the endpoint domain.