Vault 7: Projects

This publication series is about specific projects related to the Vault 7 main publication.
Athena Progress – November 17, 2015 – 11:30am
Minutes:
1) Reviewed windows Offline installer
2) Discussed prototype demo
3) Added additional test cases
Achievements:
1) Evaluating prototype demo (still having minor issues)
2) New Tests for better debugging integration (see next page)
a. TestEngineCommand w/out WEB “ant –f build_web.xml”
b. TestRamOnly w/out WEB
3) offline linux installer prototype
4) fixes to engine and console (see next page)
Tasks under development:
1) Testing prototype – Denley
2) Dart configuration – XXXXX
3) Dart Testing – XXXXX (don’t forget Squid)
Issues
:
1) Demo – schedule for next week
2) fileprocessingpath – what should we do on a SET change(delete,move,not
allow if active)?
3) hibernationtime – does it make sense to SET change this if we are currently
beaconing
4) parser/set – must output ST type – so we know which one actually processed
5) command – default URL_PATH “” should be / and not failure
Test Cases:
1) Install / reboot – validate installation and check status after reboot (svchost)
2) Uninstall – validate cleanup
3) Get – retrieve files of different sizes
4) Put – write files of different sizes
5) Memload – load dlls
6) Memunload
7) Killfile
8) Offline win and lin (can this be automated?)
9) SET
10) Multiple command in a batch
11) Reinstall on the same box – if it isn’t running it should just overwrite
(check datafile)
12) Re-run the service – check if we can open the datafile
13) RamOnly - rundll should work fine for us
14) Validate that all files are removed from system (including state files)