Black Hills InfoSec - Getting PowerShell Empire Past Windows Defender

Carrie Roberts//* Windows Defender does a good job of blocking many attacks including attempts to establish Command & Control (C2) sessions with published tools like PowerShell Empire. I was recently looking for a way to establish such a C2 session on a Windows 10 computer with Windows Defender enabled. I found a project called SharpSploit […]

The post Getting PowerShell Empire Past Windows Defender appeared first on Black Hills Information Security.



from Black Hills Information Security https://www.blackhillsinfosec.com/getting-powershell-empire-past-windows-defender/

Comments

Popular posts from this blog

KnowBe4 - Scam Of The Week: "When Users Add Their Names to a Wall of Shame"

Krebs - NY Charges First American Financial for Massive Data Leak

SBS CyberSecurity - In The Wild 166