DFSP # 461 PSEXEC

DFSP # 461 PSEXEC

This week, we're diving into how to triage for PSEXEC evidence. PSEXEC leaves traces on both the source and target systems, making it essential to identify artifacts on each to determine whether a system was used as an attacker's tool or was the target of an attack. While PSEXEC has somewhat fallen out of favor due to increased use of PowerShell for similar activities, it remains a commonly abused utility among attackers. In this episode, we'll break down the key artifacts and methodologies for effective triage.

Denne episoden er hentet fra en åpen RSS-feed og er ikke publisert av Podme. Den kan derfor inneholde annonser.

Episoder(498)

Populært innen Vitenskap

fastlegen
romkapsel
tingenes-tilstand
jss
liberal-halvtime
forskningno
sinnsyn
rekommandert
villmarksliv
rss-paradigmepodden
fjellsportpodden
tomprat-med-gunnar-tjomlid
grunnstoffene
nordnorsk-historie
rss-nysgjerrige-norge
tidlose-historier
psykopoden
rss-rekommandert
rss-inn-til-kjernen-med-sunniva-rose
smart-forklart