How this analysis was created: This summary and feature list are AI-generated from collected project material and can contain mistakes. Stars, license and language are imported from GitHub. Inclusion does not mean that we have tested or audited this project. Check the source documentation for any feature you depend on. Learn more on our About page.
RTA provides a framework of scripts designed to allow blue teams to test their detection capabilities against malicious tradecraft, modeled after MITRE ATT&CK.
The main features of endgameinc/rta are: Threat Simulation Tools, Adversary Simulation, Adversary Emulation.
Projects with overlapping indexed features include: uber-common/metta — An information security preparedness tool to do adversarial simulation. redcanaryco/atomic-red-team — Atomic Red Team is an adversary simulation tool and detection validation suite designed to emulate attacker behaviors.… alphasoc/flightsim — A utility to safely generate malicious network traffic patterns and evaluate controls. nextronsystems/aptsimulator — A toolset to make a system look as if it was the victim of an APT attack. mitre/caldera — Caldera is an adversary emulation platform and command and control framework designed to simulate cyber attack… redhuntlabs/redhunt-os — Virtual Machine for Adversary Emulation and Threat Hunting.
A toolset to make a system look as if it was the victim of an APT attack
Caldera is an adversary emulation platform and command and control framework designed to simulate cyber attack patterns. It functions as an automated red team tool and threat framework orchestrator, executing attack sequences based on standardized cybersecurity threat frameworks to validate security defenses and detection capabilities. The platform distinguishes itself through the dynamic compilation of customized executable payloads and the use of framework-mapped adversary modeling to structure attack techniques. It manages asynchronous agents on targeted endpoints via a central server acce
A utility to safely generate malicious network traffic patterns and evaluate controls.
Atomic Red Team is an adversary simulation tool and detection validation suite designed to emulate attacker behaviors. It functions as a security control testing framework that uses a library of portable tests to verify if security monitoring and alerting systems correctly identify specific malicious techniques. The project serves as a MITRE ATT&CK emulation framework, mapping individual test executions to a standardized industry taxonomy of adversary behaviors. This mapping allows for the validation of security controls against the MITRE ATT&CK matrix to identify gaps in detection and respon