DFSP # 461 PSEXEC

DFSP # 461 PSEXEC

This week, we're diving into how to triage for PSEXEC evidence. PSEXEC leaves traces on both the source and target systems, making it essential to identify artifacts on each to determine whether a system was used as an attacker's tool or was the target of an attack. While PSEXEC has somewhat fallen out of favor due to increased use of PowerShell for similar activities, it remains a commonly abused utility among attackers. In this episode, we'll break down the key artifacts and methodologies for effective triage.

Denne episoden er hentet fra en åpen RSS-feed og er ikke publisert av Podme. Den kan derfor inneholde annonser.

Episoder(498)

Populært innen Vitenskap

fastlegen
tingenes-tilstand
sinnsyn
jss
forskningno
liberal-halvtime
villmarksliv
rss-paradigmepodden
rekommandert
vett-og-vitenskap-med-gaute-einevoll
fjellsportpodden
aldring-og-helse-podden
rss-rekommandert
rss-inn-til-kjernen-med-sunniva-rose
tomprat-med-gunnar-tjomlid
kvinnehelsepodden
grunnstoffene
diagnose
rss-overskuddsliv
rss-bondevennen