Skip to content

Conversation

@mcs-42
Copy link

@mcs-42 mcs-42 commented Aug 13, 2025

Update atomic with new Windows test

Details:
Downloads Python package to simulate behavior of Python malware on Windows.

Testing:
Tested locally on Windows 10 including cleanup

Associated Issues:
None

Update atomic with new Windows test
Copy link
Collaborator

@clr2of8 clr2of8 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thank you for your first-time contribution. I like the test but feel it is a better fit under T1105 Ingress Tool Transfer. Could you move it there? Also, I'd like to update name of the test to be more description such as Download Python and Unzip

@cyberbuff cyberbuff requested a review from clr2of8 September 2, 2025 16:07
cyberbuff
cyberbuff previously approved these changes Oct 4, 2025
@patel-bhavin
Copy link
Collaborator

@mcs-42 - Thank you moving this to T1105.

Can you please add screenshots of the execution and cleanup of this atomic via Invoke ? That will be of huge help with quicker review

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants