4/17 (四) 14:45 - 15:15 7F 701B

Hide Your Invocation of PowerShell Execution

PowerShell is a good tool to administrate your Windows machine and it's good for malicious actors as well. Malicious actors often use PowerShell to launch both local and remote payloads and usually want their code to be executed without detection and obfuscation. In this session, I will discuss how to use the invocation expression to launch the malicious payload and how to obfuscate your invocation.

Jie
講者
Palo Alto Networks
Security Architect, Cortex Japac

TOPIC / TRACK
SecOps 論壇

LOCATION
臺北南港展覽二館
7F 701B

LEVEL
中階 中級議程聚焦在資安架構、工具與實務應用等,適合已經具備資安基礎的資安與資訊人員。

SESSION TYPE
Breakout Session

LANGUAGE
中文

SUBTOPIC
Red Team
Threat Hunting
Hackers & Threats