j91321 / conti-manuals-analysis

Analysis of techniques used by Conti ransomware affiliates from their leaked manuals.

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Leaked Conti manuals analysis

My personal analysis of leaked Conti "pentest" manuals mapped to MITRE ATT&CK Enterprise with AtomicRedTeam tests and Sigma rules coverage mapped.

The original leak can be found on VX-Undergrounds. Some files there violate Github ToS, if you want to browse just the text manuals visit ForbiddenProgrammer/conti-pentester-guide-leak

🟥 - Conti technique not covered

🟨 - Technique covered by AtomicRedTeam

🟦 - Technique covered by Sigma

🟩 - Technique covered by AtomicRedTeam + Sigma

MITRE ATT&CK framework mapping

About

Analysis of techniques used by Conti ransomware affiliates from their leaked manuals.