News
Now Reading
PowerShell Forensics
0

PowerShell Forensics

by Igor Mikhaylov2018-02-04

The work of Ryan Kazannian and Matt Hastings for their research on the attacks of Powershall served as a starting point and the main resource for research on this topic. Recently, David Wells has been working on this for a long time.


Power Shell is a modern standardized command-line shell that opens access to more flexible management of a Windows-based computer. In fact – the same command line, but the possibilities are much broader. The functionality of the software is impressive. You can manage services, accounts, file stores, processes, and even servers with it.

A person unfamiliar with the basics of the command line, comprehend the subtleties of working with the utility will not be easy. Unfortunately, there are few simple reference books on this topic. David Wells quite clearly described the basics of Power Shell. We hope this information will be useful to you.

More.