Distrito Telefónica. Innovation & Talent Hub

ATTPwn: emulation of opponents

Technology
Cybersecurity and Privacy

ATTPwn is a cybersecurity tool designed to emulate adversaries that was presented at BlackHat USA 2020 and DefCON 2020. The tool aims to bring emulation of a real threat into closer contact with implementations based on the techniques and tactics from the MITRE ATT&CK framework. The goal is to simulate how a threat works in an intrusion scenario, where the threat has been successfully deployed.
It is focused on Microsoft Windows systems through the use of the Powershell command line. This enables the different techniques based on MITRE ATT&CK to be applied. ATTPwn is designed to allow the emulation of adversaries as for a Red Team exercise and to verify the effectiveness and efficiency of the organization's controls in the face of a real threat.

With this tool we contribute to the creation of free access tools to solve. security problems this time with a tool capable of simulating situations under some kind of threat as realistic as possible to be able to proceed to protect ourselves from it.


Explore our next research

SYMBIOTIK Project: Visualization systems to facilitate decision making.

SYMBIOTIK integrates Artificial Intelligence solutions that take into account the context, detect the user's emotions, and have new expressive capabilities.

10/19/2023
Digital computer with drawing of a brain and background with circuit lines