githubEdit

Windows Powershell

System Reconnaissance

Get-WmiObject -Class Win32_OperatingSystem (Enumerate System Information)

Get-Service | Where-Object {$_.Status -eq "Running"} (Check for running services)

Get-NetIPConfiguration (Get current network configuration)

User and Group Enumeration

Get-LocalUser (List local users)

quser (List user sessions)

Get-LocalGroup (List local groups)

Get-LocalGroupMember -Group "Administrators" (List group members)

Network Scanning

Test-Connection IP -Count 1 -Quiet (Discover live systems)

1..1024 | % {echo ((new-objectNet.Sockets.TcpClient).Connect("192.168.1.1", $_)) "Port$_ is open"} (Scan for open ports)

Exploitation

File and Directory Manipulation

Credential Harvesting

Privilege Escalation

Lateral Movement

Post Exploitation

Defensive Evasion

Data Exfiltration

Log Management

Last updated