Subscribe
Search

PowerShell Schenanigans, Brisbane OWASP

8th July 2014

PowerShell, the must have tool for administrators, and the long overlooked security challenge. See Kieran Jacobsen present how PowerShell, with its deep Microsoft platform integration can be utilised by an attack to become a powerful attack tool. Learn how an attacker can move from a compromised workstation to a domain controller using PowerShell and WinRM whilst learning how to defend against these attacks.

 

Download Slides

Lateral Movement with PowerShell, Brisbane Infrastructure User Group

13th May 2014

PowerShell, the must have tool for administrators, and the long overlooked security challenge. See Kieran Jacobsen present how PowerShell, with its deep Microsoft platform integration can be utilised by an attack to become a powerful attack tool. Learn how an attacker can move from a compromised workstation to a domain controller using PowerShell and WinRM whilst learning how to defend against these attacks.

 

Download Slides

Risky Business #313 -- Why you should know PowerShell

14th March 2014

Show Link: Risky.Biz
On this week's show we have a look at PowerShell, the Microsoft sorta scripting language admin thingy. As it turns out, PowerShell can be an attacker's best friend when it comes to lateral movement through a network. We'll chat with Kieran Jacobsen about that in this week's feature interview. He did a cracker presentation at CrikeyCon where he demo'd owning a domain controller and dumping all its creds with something like five lines of PowerShell. I mean, there are caveats there, but wow... the demotime was food for thought.

PowerShell Shenanigans, CrikeyCon 2014

8th March 2014

WebSite: CikeyCon
PowerShell is something that is becoming the must-have tool for system administrators in the Microsoft world. However, those in the field, including security staff, have long overlooked it. In this talk, Kieran will introduce PowerShell, discuss Microsoft’s aim and rationale for its existence, and show how Microsoft’s best intentions can be turned against them by demonstrating how this automation platform can become an attack automation platform.

Download Slides

 

Achieving Enterprise Mobility, Infrastructure Saturday 2013

7th December, 2013

Website: Infrastructure Saturday

Learn about the advances in Windows 8.1 and Windows Server 2012R2 that allow your users to work from anywhere in the world. Kieran Jacobsen will cover topics client seamless corporate connectivity with DirectAccess, managing BitLocker with MBAM, user document synchronization with Work Folders, addressing the needs of enterprise security and any performance requirements you might have.

Download Slides

Direct Access Do’s and Don’ts, Brisbane Infrastructure Group

8th October, 2013

Are you considering deploying DirectAccess? DirectAccess is Microsoft’s next generation remote access solution providing a seamless corporate network connectivity experience. The session will cover a number of issues that IT professionals deploying DirectAccess should be aware of including load balancing, certificates, and IP Infrastructure requirements.

Download slides

Advanced PowerShell Automation, Infrastructure Saturday 2012

3rd November, 2012

Website: Infrastructure Saturday

CMDLets, scripts, functions, methods and modules all make PowerShell sound very complicated however with some simple guidelines you too can become a PowerShell automation Pro!

 

Download slides

Malware What!, Infrastructure Saturday 2012

3rd November, 2012

Website: Infrastructure Saturday

Malware like Flame, Stuxnet, and Zeus have grabbed International headlines; but what do they mean to us, the average IT Professional? Are we at risk? During this presentation, we will see how an intruder gains access to our networks, escalates their access, and finally causes complete destruction. This presentation will include a botnet written in PowerShell and malicious HID devices.

Download slides

Understanding PKI and Certificate Services, Infrastructure Saturday 2011

3rd December, 2012

Website: Infrastructure Saturday

In every organization, there is a growing need for a strong well-designed public key infrastructure solution and in many of these; Active Directory Certificate Services will be used. This session will guide you through a solution based on best practice, shed some light on common issues encountered and some shortcuts to assist in management with PowerShell.

Download Slides