Loading…
SELECT SESSIONS NOW!
Note that "Find Wally" is meant for Stargazing Sessions. When other sessions are full, Wally cannot help you there.
Thursday, May 9 • 8:00am - 9:45am
Behind the Curtain of PowerShell Cmdlets: Uncovering Hidden Capabilities

Log in to save this to your schedule, view media, leave feedback and see who's attending!

Log in to leave feedback.
Description:
In this session, you'll gain insight into how PowerShell cmdlets work behind the scenes, enabling you to find hidden capabilities even in built-in cmdlets. Developers will learn how to create their own cmdlets, and security engineers will better understand PowerShell-based attacks. We'll explore well-known cmdlets and how to overcome built-in limitations. The demo-based session includes an intro to Win32 API, monitoring built-in cmdlets API calls, analyzing API calls in source code, and abstracting Win32 API functions with PSReflect to customize built-in cmdlets.

What you will learn:
  • Uncovering hidden capabilities in built-in cmdlets
  • Using PSReflect to abstract Win32 API functions
  • Bypassing limitations of PowerShell cmdlets

Speakers
avatar for Jordan Benzing

Jordan Benzing

Microsoft MVP, Engineer, Patch My PC
Jordan has been working in the Industry since 2009. Since starting he’s worked with Active Directory, Group Policy, ConfigMgr, SCOM and PowerShell. Jordan has also had the opportunity to work in the healthcare industry as a ConfigMgr Infrastructure Team lead supporting over 150,000... Read More →
avatar for Sergey Chubarov

Sergey Chubarov

Ethical Hacker
Sergey Chubarov is a Security and Cloud Expert, Instructor with 15+ years' experience on Microsoft technologies.His day-to-day job is to help companies securely embrace cloud technologies.He has certifications and recognitions such as Microsoft MVP: Microsoft Azure, Offensive Security... Read More →


Thursday May 9, 2024 8:00am - 9:45am CDT
Minnetonka A
  Security and Compliance, PowerShell
  • Skill Level Super Deep Dive (may make your head hurt)