Introducing DeepBlueCLI - A PowerShell Module for Hunt Teaming via Windows Event Logs

Introducing DeepBlueCLI - A PowerShell Module for Hunt Teaming via Windows Event Logs

via YouTube Direct link

Invoke obfuscation

24 of 28

24 of 28

Invoke obfuscation

Class Central Classrooms beta

YouTube videos curated by Class Central.

Classroom Contents

Introducing DeepBlueCLI - A PowerShell Module for Hunt Teaming via Windows Event Logs

Automatically move to the next video in the Classroom when playback concludes

  1. 1 Introduction
  2. 2 The evolution of payloads
  3. 3 What does my average client have
  4. 4 What do you look for
  5. 5 Logging new process creation
  6. 6 Writing the script
  7. 7 Design notes
  8. 8 Perfect solution fallacy
  9. 9 Perfect attacker fallacy
  10. 10 Regex
  11. 11 Whitelist
  12. 12 Use cases
  13. 13 Summary
  14. 14 DeepBlueCLI
  15. 15 Metasploit
  16. 16 Hash Dump
  17. 17 Defaults
  18. 18 Modern
  19. 19 System
  20. 20 Power
  21. 21 NetWeb
  22. 22 PowerShell
  23. 23 DeepBlue CLI
  24. 24 Invoke obfuscation
  25. 25 Stock Total Shoutout
  26. 26 Detected
  27. 27 Next Steps
  28. 28 Demo

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.