The 2022 ATT&CK Evaluations for Managed Services Call for Participation is now open. Click here to learn how to participate.

Home  >  Enterprise Wizard Spider and Sandworm  >  Environment

Wizard Spider and Sandworm Evaluation: Environment

The evaluations will be performed in the Microsoft Azure Cloud. There will be two organizations with separate networks and domains, with Windows Defender disabled for certain portions of the evaluations. The networks will contain domain joined machines running Windows Server 2019, Windows 10 Pro, and CentOS 7.9. The versions are as follows:

  • Windows Server 2019
    • Publisher: MicrosoftWindowsServer
    • Version: 1809
    • SKU: 2019-Datacenter
  • Windows 10 Pro
    • Publisher: MicrosoftWindowsDesktop
    • Version: 20h2
    • SKU: 20h2-pro
  • CentOS 7.9
    • Publisher: Open Logic
    • SKU: 7_9
    • Kernel: 3.10.0-1160.15.2.el7.x86_6
Environment configuration is subject to change. Any changes will be reflected on this page. Full environment configuration details will be available upon the release of results. (Updated June 14, 2021 to add CentOS kernel build version)

Figure 1: Wizard Spider and Sandworm Evaluation Environment