Skip to content

Invoke-Atomic

Invoke-Atomic is a PowerShell framework for developing and executing Atomic Red Team tests.

Cross-platform

Invoke-Atomic runs anywhere PowerShell Core runs. Test on Windows, macOS, and Linux with minimal configuration!

Testing at a distance

With Invoke-Atomic, you can execute tests remotely across a network.

New tests made easily

Quickly generate and create new atomic tests using AtomicGen.io

Before you get started

  • Executing atomic tests may leave your system in an undesirable state. You are responsible for understanding what a test does before executing.
  • Ensure you have permission to test before you begin.
  • It is recommended to set up a test machine for atomic test execution that is similar to the build in your environment. Be sure you have your collection/EDR solution in place, and that the endpoint is checking in and active.

Invoke-AtomicRedTeam installation and usage instructions can be found on the docs on the top menu.

There are a series of short instructional videos on this YouTube channel.

You can also find an in-depth 1 hour webcast here, with hands-on lab documents here.

Also a good general overview of the value of attack emulation is found here.