Windows Powershell
System Reconnaissance
Get-WmiObject -Class Win32_OperatingSystem (Enumerate System Information)
Get-Service | Where-Object {$_.Status -eq "Running"} (Check for running services)
Get-NetIPConfiguration (Get current network configuration)User and Group Enumeration
Get-LocalUser (List local users)
quser (List user sessions)
Get-LocalGroup (List local groups)
Get-LocalGroupMember -Group "Administrators" (List group members)Network Scanning
Test-Connection IP -Count 1 -Quiet (Discover live systems)
1..1024 | % {echo ((new-objectNet.Sockets.TcpClient).Connect("192.168.1.1", $_)) "Port$_ is open"} (Scan for open ports)Exploitation
File and Directory Manipulation
Credential Harvesting
Privilege Escalation
Lateral Movement
Post Exploitation
Defensive Evasion
Data Exfiltration
Log Management
Last updated