DataDog/stratus-red-team
:cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud
GoApache-2.0
Issues
- 1
AWS: Persist by creating an identity provider
#646 opened by christophetd - 4
- 16
Error: error configuring Terraform AWS Provider: Error creating AWS session: profile "my-dev" is configured to use SSO but is missing required configuration: sso_region, sso_start_url
#626 opened by amirzak - 5
Error with
#636 opened by Redteamer0101 - 2
unable to apply Terraform: exit status 1 Error: Module version requirements have changed
#633 opened by amirzak - 1
Wrong role policy for ec2-get-user-data(Disovery)
#634 opened by CapmareAlex - 8
Not Picking up Instance Profile On EC2
#624 opened by jamcg - 2
Issue when try to build Stratus red team
#616 opened by mahaputrailhamawal - 3
Unable to apply terraform while using `aws-vault`
#596 opened by za - 2
Add references to S3 ransomware in the wild to existing S3 attack techniques
#484 opened by christophetd - 0
Analyze Sebastian Walla's fwd:cloudsec talk
#571 opened by christophetd - 0
Analyze AWS CIRT post and extract relevant TTPs
#594 opened by christophetd - 1
Analyze "ransomware in the cloud" post
#568 opened by christophetd - 0
Document Halberd
#584 opened by christophetd - 2
- 3
Add "in the wild" reference to "Execute Commands on Virtual Machine using Run Command"
#552 opened by christophetd - 1
- 1
- 1
Terraform init is painfully slow
#557 opened by christophetd - 0
- 0
- 3
Terraform CDK?
#543 opened by HarishHary - 2
- 0
- 2
- 5
[AWS] Add boundary support
#508 opened by Renizmy - 0
- 3
Analyze Unit42 blog post, measure coverage and propose new attack techniques
#527 opened by christophetd - 2
New attack technique: Login via AWS EC2 Serial Console
#531 opened by siigil - 0
- 0
New attack technique: Use GCP OSLogin to Push SSH Keys
#536 opened by siigil - 1
- 0
- 0
New attack technique: Login via Azure Serial Console
#533 opened by siigil - 0
- 2
Unable to re-detonate aws.credential-access.secretsmanager-batch-retrieve-secrets because same secret naming convention
#551 opened by kljunowsky - 2
New attack techniques: Kubernetes
#550 opened by micahhausler - 0
- 0
New EKS attack technique: Create new admin cluster access management entry to access the cluster
#540 opened by christophetd - 1
- 0
Display nicer error when AWS_REGION is not set
#506 opened by christophetd - 1
- 1
"An argument named skip_get_ec2_platforms is not expected here" when detonating aws.credential-access.ec2-get-password-data
#505 opened by christophetd - 0
- 0
New attack technique: Snapshot existing volume and attach to compromised EC2 instance
#485 opened by christophetd - 1
Usage of ssm:SendCommand on multiple instances #60
#480 opened by christophetd - 1
Create new backdoor IAM role
#469 opened by christophetd - 1
AWS Route53: disable DNS query logging
#470 opened by ccamac01-dd - 1
AWS SNS: delete topic
#471 opened by ccamac01-dd - 4
Incorrect IAM permissions causing Stratus to error on detonation of aws.defense-evasion.organizations-leave
#462 opened by christofort