Security News

Microsoft warns of critical PowerShell 7 code execution vulnerability
2021-07-02 13:20

NET Core remote code execution vulnerability in PowerShell 7 caused by how text encoding is performed in. PowerShell provides a command-line shell, a framework, and a scripting language focused on automation for processing PowerShell cmdlets.

Microsoft will release future PowerShell updates via Windows Update
2021-06-16 18:13

Microsoft is making it easier to update PowerShell on Windows 10 and Windows Server devices by releasing future updates through the Microsoft Update service. "In the past, Windows users were notified in their console that a new version of PowerShell 7 is available, but they still had to hop over to our GitHub release page to download and install it, or rely on a separate package management tool like the Windows Package Manager, Chocolatey, or Scoop," said PowerShell Senior Software Engineer Travis Plunk.

COVID-Related Threats, PowerShell Attacks Lead Malware Surge
2021-04-13 20:24

Surging numbers of COVID-themed attacks, PowerShell trojans, along with the SolarWinds compromise and the continued spread of Sunburst malware were major contributors to a massive spike in the number of observed attacks in the wild during the last half of 2020, which McAfee's said averaged 588 attacks per minute within its telemetry during Q3 and Q4 of 2020. Researchers observed an average of 648 threats per minute in Q4 in the wild, an increase of 10 percent over the third quarter a continued upward trend from the 40 percent jump compared to Q2 2020, McAfee's latest threat report said.

From PowerShell to Payload: An Analysis of Weaponized Malware
2021-04-02 16:45

The first function that we see defined in this PowerShell code is named sOH, which is not very descriptive. All of these function and variable names seem to be random and obfuscated, but we can make sense of them by reading the definition of the function.

How to block point-to-point file transfers in Skype for Business using PowerShell
2021-02-08 21:02

There are situations where you want to block P2P file transfers to people outside the organization during a video conference meeting. That does not mean that Microsoft 365 administrators cannot control certain aspects of Skype for Business using PowerShell commands.

5 ways to manage computers securely and remotely using PowerShell
2020-10-16 14:19

Some are common to most cmdlets, others are unique to a specific cmdlet or branch of cmdlets. The -ComputerName argument is available to many cmdlets and can be used to target a specific device when managing processes remotely.

How to customize PowerShell settings using profiles
2020-08-18 15:14

Learn to create profiles within PowerShell to customize your settings based on your working environment for optimal performance and efficiency. The use of profiles, while not a requirement to use PowerShell, can help those who wear several hats within their IT organizations or simply prefer to keep an organized set of tools at the ready whenever working from PS. The profiles are flexible enough to include modules, functions, variables-essentially, anything one might commonly use or reference-can be added to the profile(s) making the console ready to use at launch.

Microsoft releases PowerShell 7 for Windows, macOS and Linux
2020-03-06 10:06

Microsoft has released PowerShell 7, the latest major update to its popular task automation tool and configuration management framework that can be used on various operating systems. PowerShell was initially a Windows component, but was open-sourced in 2016 and made available for Windows, macOS and various Linux distributions.

From PowerShell to auditing: Expand your cybersecurity know-how at SANS London 2019
2019-09-13 06:00

Gain the skills you need to fend off miscreants this October in the UK capital Promo The internet is full of powerful, fast-changing hacking tools and malicious actors who know how to use them....

"MuddyWater" Cyberspies Update PowerShell Backdoor
2019-06-10 17:49

The cyber-espionage group known as MuddyWater has used an updated multi-stage PowerShell backdoor in recent campaigns, Trend Micro’s security researchers report. read more