Section 3 Module 1 Introduction
Section 3 Module 1 Introduction
https://en.wikipedia.org/wiki/PowerShell
https://www.secureworks.com/blog/living-off-the-land
• We can use it to interface with the .NET and other Windows APIs.
https://en.wikipedia.org/wiki/PowerShell
https://en.wikipedia.org/wiki/Command-line_interface#Command-line_interpreter
Penetration Testing Professional 5.0 – Caendra Inc. © 2018
Powershell is typically used by administrators as it provides great
functionality and flexibility in regards to managing Windows
systems and automating tasks, which is mostly the reason why it’s
the perfect tool when it comes to our process as penetration
testers.
https://msdn.microsoft.com/en-us/library/ms714395(v=vs.85).aspx
For the most part, we will be working with version 1.0 or 2.0.
https://en.wikipedia.org/wiki/PowerShell#Versions https://www.crowdstrike.com/blog/investigating-powershell-command-and-script-logging/
https://blogs.msdn.microsoft.com/powershell/2017/11/02/powershell-constrained-language-mode/
Penetration Testing Professional 5.0 – Caendra Inc. © 2018
Advancements in the “freedom” of Powershell:
You can learn more about Open source Powershell, and it can be
downloaded from the following github page:
https://github.com/powershell/powershell
https://blogs.msdn.microsoft.com/powershell/2018/01/10/powershell-core-6-0-generally-available-ga-and-supported/
Windows Management
Living Off The Land Instrumentation
https://www.secureworks.com/blog/living-
https://en.wikipedia.org/wiki/Windows_Man
off-the-land
agement_Instrumentation
Powershell Versions
.NET Framework https://en.wikipedia.org/wiki/PowerShell#
https://en.wikipedia.org/wiki/.NET_Framewo Versions
rk