diff --git a/Apollo/HIGH_ClipboardMonitor_Apollo.yaml b/Apollo/HIGH_ClipboardMonitor_Apollo.yaml index 78ff1dc..8d6eebf 100644 --- a/Apollo/HIGH_ClipboardMonitor_Apollo.yaml +++ b/Apollo/HIGH_ClipboardMonitor_Apollo.yaml @@ -7,7 +7,7 @@ keywords: - apollo_callback environment: {} -# uses a forked GetClipboard BOF from https://github.com/atomiczsec/BOF_Collection/tree/master/Collection/Clipboard +# Repository: https://github.com/atomiczsec/BOF_Collection/tree/master/Collection/Clipboard steps: - name: "GetClipboard" @@ -23,4 +23,5 @@ steps: "coff_name": "GetClipboard.o", "function": "go", "serialized_arguments": "00000000" - } \ No newline at end of file + + } diff --git a/Apollo/HIGH_NanoRobeus_Apollo.yaml b/Apollo/HIGH_NanoRobeus_Apollo.yaml index a86a92e..9575a95 100644 --- a/Apollo/HIGH_NanoRobeus_Apollo.yaml +++ b/Apollo/HIGH_NanoRobeus_Apollo.yaml @@ -8,7 +8,7 @@ keywords: - apollo_callback environment: {} -#uses: https://github.com/sliverarmory/armory/ +# Repository: https://github.com/wavvs/nanorobeus steps: @@ -25,4 +25,5 @@ steps: "coff_arguments": [["z","dump"],["z","/all"],["z",""],["z",""],["z",""]], "serialized_arguments": "00000000" }' - command_name: execute_coff \ No newline at end of file + + command_name: execute_coff diff --git a/Apollo/LOW_BasicRecon_Apollo.yaml b/Apollo/LOW_BasicRecon_Apollo.yaml index e5387f0..49ce715 100644 --- a/Apollo/LOW_BasicRecon_Apollo.yaml +++ b/Apollo/LOW_BasicRecon_Apollo.yaml @@ -8,7 +8,7 @@ keywords: - apollo_callback environment: {} -#uses: https://github.com/trustedsec/CS-Situational-Awareness-BOF +# Repository: https://github.com/trustedsec/CS-Situational-Awareness-BOF steps: - name: "NetworkConnections" diff --git a/Apollo/LOW_DomainEnumeration_Apollo.yaml b/Apollo/LOW_DomainEnumeration_Apollo.yaml index be6f4f4..84f5bed 100644 --- a/Apollo/LOW_DomainEnumeration_Apollo.yaml +++ b/Apollo/LOW_DomainEnumeration_Apollo.yaml @@ -8,8 +8,7 @@ keywords: - apollo_callback environment: {} -# uses: https://github.com/trustedsec/CS-Situational-Awareness-BOF, and listwamaccounts BOF from: https://github.com/Tw1sm/list-wam-accounts - +# Repository: https://github.com/trustedsec/CS-Situational-Awareness-BOF, https://github.com/Tw1sm/list-wam-accounts steps: - name: "Current Domain Context" @@ -134,4 +133,4 @@ steps: "coff_name": "listwamaccounts.x64.o", "function_name": "go" }' - command_name: execute_coff \ No newline at end of file + command_name: execute_coff diff --git a/Apollo/LOW_NetworkPassive_Apollo.yaml b/Apollo/LOW_NetworkPassive_Apollo.yaml index 26f1110..e66521f 100644 --- a/Apollo/LOW_NetworkPassive_Apollo.yaml +++ b/Apollo/LOW_NetworkPassive_Apollo.yaml @@ -8,7 +8,7 @@ keywords: - apollo_callback environment: {} -# CS TrustedSec BOFs https://github.com/trustedsec/CS-Situational-Awareness-BOF +# Repository: https://github.com/trustedsec/CS-Situational-Awareness-BOF steps: - name: "IPConfig" @@ -87,4 +87,5 @@ steps: "arguments": [], "serialized_arguments": "00000000" }' - command_name: execute_coff \ No newline at end of file + + command_name: execute_coff diff --git a/Apollo/LOW_ProcessRecon_Apollo.yaml b/Apollo/LOW_ProcessRecon_Apollo.yaml index a8f60eb..1e8b165 100644 --- a/Apollo/LOW_ProcessRecon_Apollo.yaml +++ b/Apollo/LOW_ProcessRecon_Apollo.yaml @@ -8,7 +8,7 @@ keywords: - apollo_callback environment: {} -# uses: https://github.com/trustedsec/CS-Situational-Awareness-BOF +# Repository: https://github.com/trustedsec/CS-Situational-Awareness-BOF steps: - name: "ProcessList" @@ -52,4 +52,5 @@ steps: "arguments": [], "serialized_arguments": "00000000" }' - command_name: execute_coff \ No newline at end of file + + command_name: execute_coff diff --git a/Apollo/LOW_SystemRecon_Apollo.yaml b/Apollo/LOW_SystemRecon_Apollo.yaml index b6f73b8..5f3c117 100644 --- a/Apollo/LOW_SystemRecon_Apollo.yaml +++ b/Apollo/LOW_SystemRecon_Apollo.yaml @@ -8,7 +8,7 @@ keywords: - apollo_callback environment: {} -# uses https://github.com/trustedsec/CS-Situational-Awareness-BOF +# Repository: https://github.com/trustedsec/CS-Situational-Awareness-BOF steps: - name: "WhoAmI" @@ -92,4 +92,5 @@ steps: "arguments": [], "serialized_arguments": "00000000" }' - command_name: execute_coff \ No newline at end of file + + command_name: execute_coff diff --git a/Apollo/MEDIUM_CredentialPreperation_Apollo.yaml b/Apollo/MEDIUM_CredentialPreperation_Apollo.yaml index 18001f5..725d231 100644 --- a/Apollo/MEDIUM_CredentialPreperation_Apollo.yaml +++ b/Apollo/MEDIUM_CredentialPreperation_Apollo.yaml @@ -8,7 +8,7 @@ keywords: - apollo_callback environment: {} -# uses: https://github.com/trustedsec/CS-Situational-Awareness-BOF, https://github.com/outflanknl/C2-Tool-Collection/tree/main/BOF/Klist +# Repository: https://github.com/trustedsec/CS-Situational-Awareness-BOF, https://github.com/outflanknl/C2-Tool-Collection/tree/main/BOF/Klist steps: - name: "Current User Context"