❌

Normal view

There are new articles available, click to refresh the page.
Before yesterdayMain stream

Getting PowerShell Empire Past Windows Defender

By: BHIS
15 February 2019 at 17:03

Carrie Roberts //* (Updated 2/12/2020) ADVISORY: The techniques and tools referenced within this blog post may be outdated and do not apply to current situations. However, there is still potential […]

The post Getting PowerShell Empire Past Windows Defender appeared first on Black Hills Information Security, Inc..

SSHazam: Hide Your C2 Inside of SSH

By: BHIS
8 January 2019 at 11:04

Carrie Roberts //* SSHazam is a method of running any C2 tool of your choice inside a standard SSH tunnel to avoid network detections. The examples here involve running PowerShell […]

The post SSHazam: Hide Your C2 Inside of SSH appeared first on Black Hills Information Security, Inc..

Empire Resource Files and Auto Runs

By: BHIS
26 October 2017 at 10:00

Carrie Roberts* // I have added resource file and autorun functionality to PowerShell Empire. Empire now has the ability to run multiple commands at once by specifying the commands in […]

The post Empire Resource Files and Auto Runs appeared first on Black Hills Information Security, Inc..

Let’s Go Hunting! How to Hunt Command & Control Channels Using Bro IDS and RITA

By: BHIS
13 September 2017 at 10:55

Logan Lembke// Here at BHIS, we β™₯ Bro IDS. Imagine… Bro IDS Everywhere! If you haven’t encountered Bro IDS before, checkout thisΒ webcastΒ on John’s Youtube channel discussing the need for Bro […]

The post Let’s Go Hunting! How to Hunt Command & Control Channels Using Bro IDS and RITA appeared first on Black Hills Information Security, Inc..

Using PowerShell Empire with a Trusted Certificate

By: BHIS
23 November 2016 at 09:46

Carrie Roberts* // Using a trusted certificate and non-default Empire options will help increase your chances of getting a successful session out of a network. Follow these instructions to get […]

The post Using PowerShell Empire with a Trusted Certificate appeared first on Black Hills Information Security, Inc..

❌
❌