The PowerShell Podcast

Exploring Cybersecurity with PowerShell and John Hammond

Aug 5, 2024
John Hammond, a renowned cybersecurity researcher and educator, shares his unique insights on PowerShell in the realm of cybersecurity. He discusses the duality of PowerShell as both a tool for attacks and defense, emphasizing critical security features like constrained language mode. Listeners gain practical tips for securing their environments and learn about transitioning into security-focused roles. John also touches on the importance of hands-on experimentation and community engagement in evolving cybersecurity skills.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

PowerShell Attacks and Easy Wins

  • PowerShell attacks exploit security features that are often left unimplemented.
  • Enabling features like Constrained Language Mode enhances PowerShell environments' security.
INSIGHT

Constrained Language Mode

  • Constrained Language Mode limits executable commands, disrupting automated attacks.
  • Threat actors can bypass this by switching to older, less secure PowerShell versions if not blocked.
ADVICE

Practice PowerShell

  • Experiment and tinker in a safe environment like a VM or CTF.
  • Automate monotonous tasks with PowerShell to grow your skills.
Get the Snipd Podcast app to discover more snips from this episode
Get the app