Skip to content

Can not create new adversaries and import APT29 adversary #2733

@dino-chiio

Description

@dino-chiio

I have just installed CALDERA version 4.1.0 using Docker environment. I followed this repo and config caldera to import APT29 adversary.
I am struggling with some obstacles, please help me overcome these. Thanks so muck!

  • After starting CALDERA server, I successfully deployed an agent on Windows victim and see imported APT29 abilities as Fig.1 and Fig.2
  • But I can not create a new adversary when clicking CREATE button, nothing happened, or importing APT29 adversaries - It threw errors as Fig.3 And when I click in one profile in pre-defined list, there is no ability in this profile. However, when click to add adversary, it shows those abilities as Fig.4 and Fig.5
  • In the Operations option, when creating and starting an operation, in docker terminal, it threw the error as Fig.6
  • This is a sample of pre-defined APT29 adversary
    `id: 3af0e59b-0d2a-48cd-b934-c46d5d1621d6
    name: ATT&CK Eval APT3 - 5.B-8.A
    description: Access Token Manipulation, Discovery for Lateral Movement, Persistence, and Discovery for Collection
    visible: 1
    phases:
    1:
    • 03afada1-1714-408f-bde5-f528b91dc89d`
  • Figure 1
    image
    Figure 2
    image

Figure 3
image
*Figure 4
image
** Figure 5 **
image

Figure 6
image

Metadata

Metadata

Assignees

No one assigned

    Labels

    questionIndicates that an issue, pull request, or discussion needs more information

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions