The most recent content from our members.
Powershell is used more and more by attackers with tools like Empire, PowerSploit, Nishang, PowerUp, etc. Powershell executionpolicy does nothing to stop these tools and we admins need PowerShell as well. Currently the best defense is to log and monitor PowerShell execution. I'd like to see a connector created for…
I really love the rules in LEM. use them for lots of notification. What I'd like to do, is use the rules to execute a powershell script. for example, when a user is added to an ou, the change group rule should execute a powershell script adding the user to a security group. I have the script running as a scheduled task at…
It looks like you're new here. Sign in or register to get started.