Further reading
While we focused on Atomic Red Team and CALDERA during our discussion of breach and attack simulation (BAS) tools, there are many commercial and open source solutions out there that can be used as alternatives. Let’s highlight two popular open source options:
- Infection Monkey:
Infection Monkey is an open source platform that can be used for launching realistic attacks against a specified set of target endpoints: https://www.akamai.com/infectionmonkey
- Network Flight Simulator (flightsim):
AlphaSOC’s Network Flight Simulator (flightsim), focuses instead on generating malicious-looking network traffic, specifically for testing detections built for network telemetry: https://github.com/alphasoc/flightsim