The Adversarial Tactics, Techniques & Common Knowledge (ATT&CK) gives a comprehensive list of malicious threats tactics and techniques for most platforms, including Windows, Linux, macOS, and mobile. For example, the AppInit DLLs in one of Windows Technique Matrix, the ATT&CK explains AppInit DLLs, examples, mitigation, detection and references (https://attack.mitre.org/wiki/Technique/T1103).
Here are the testing scripts that can be used to simulate the APT attacks or the ATT&CK. These can be used to test whether existing security solutions are able to detect those suspicious behaviors. Refer to the following:
- APT Simulator: It includes the toolset and PowerShell scripts to generate the attacks on Windows. https://github.com/NextronSystems/APTSimulator ...