Distrito Telefónica. Innovation & Talent Hub
ATTPwn is a cybersecurity tool designed to emulate adversaries that was presented at BlackHat USA 2020 and DefCON 2020. The tool aims to bring emulation of a real threat into closer contact with implementations based on the techniques and tactics from the MITRE ATT&CK framework. The goal is to simulate how a threat works in an intrusion scenario, where the threat has been successfully deployed.
It is focused on Microsoft Windows systems through the use of the Powershell command line. This enables the different techniques based on MITRE ATT&CK to be applied. ATTPwn is designed to allow the emulation of adversaries as for a Red Team exercise and to verify the effectiveness and efficiency of the organization's controls in the face of a real threat.
With this tool we contribute to the creation of free access tools to solve. security problems this time with a tool capable of simulating situations under some kind of threat as realistic as possible to be able to proceed to protect ourselves from it.