Skip to main content

PowerShell is certainly powerful, and that’s why hackers love it

microsoft powershell open source
Wikimedia
The PowerShell scripting language that runs behind the scenes of every Windows based PC is also one of the tools most favored by hackers. In a new report, it’s been discovered that more than a third of security incidents reported use PowerShell in some way to facilitate the breach.

PowerShell is, as Microsoft describes it, a “task automation and configuration management framework,” built upon the .NET Framework, that facilitates the simplistic management of systems. That’s all well and good, but it’s that power and ease of use which makes it so versatile and useful for nefarious individuals.

This news comes out of a new United Threat Research report from Carbon Black. It cites research that suggests 38 percent of incidents reported to the security firm utilized PowerShell in some form or another. Spread that net further to Carbon Black’s partners, and the number jumps to 68 percent of system breaches having some PowerShell involvement.

Perhaps the most worrying aspect of this report though, is that it discovered 31 percent of all reported incidents involving PowerShell drummed up no security alerts before the threat was discovered.

Part of the reason for that is because PowerShell is most often utilized in some form of computer fraud, whether it’s in the creation of a phony anti-virus programs, or similar pieces of traditionally trustworthy software. It’s also commonly involved in the generation of fake login screens to try and capture user details through phishing and social engineering.

Unfortunately, as Carbon Black’s chief security strategist, Ben Johnson, explained, this isn’t likely to change any time soon. Because PowerShell is so fundamental to the framework of many PCs as we know them, and allows for the simplistic automation of tasks, nobody really wants to curtail its usage, or impair its abilities. We need to “strike a balance between IT automation and security,” said Johnson in a statement. But that balance will be hard to find.

Jon Martindale
Jon Martindale is the Evergreen Coordinator for Computing, overseeing a team of writers addressing all the latest how to…
These TP-Link mesh Wi-Fi systems are up to 40% off right now
The TP-Link Deco mesh Wi-Fi system on a table.

 

If you're looking at router deals because your current one doesn't reach every corner of your home, you may want to take advantage of Amazon's ongoing discounts of up to 40% for TP-Link mesh Wi-Fi systems. TP-Link is one of the most trusted brands in the internet connectivity space, so you know that you'll be getting top-quality devices when you go for any of its mesh Wi-Fi systems. You're going to have to be quick with your purchase though, as the potential savings from these offers may be gone as soon as tomorrow.

Read more
My most anticipated laptop of the year just got leaked
Foz Do Arelho, Portugal, February 27, 2020 - Laptop, Camera, Pad and phone on a bench at the seaside. Image on the laptop screen saying digital nomad.

The hype for Qualcomm's Snapdragon X Elite laptops is building. Having seen what these machines can do in person already, it's safe to say that these are the laptops I'm most excited about this year.

And today, a leak has revealed what some of the first devices with this much-anticipated chip will look like. Recently shared on X by the usually reliable Microsoft leaker WalkingCat are photos of a new product being referred to as the "Yoga Slim 7 14 Snapdragon Edition."

Read more
These 6 tweaks take MacBooks from great to nearly perfect
The MacBook Air on a white table.

I love getting a new MacBook. The slow-opening box, the fresh install of macOS, even the enchanting new Mac smell (which people have been rhapsodizing about for decades) -- it’s all part of the experience.

But you know what? MacBooks don't arrive perfect out of the box. There are a few things that I always have to adjust, regardless of how powerful the laptop is. From changing the default apps to unlocking a few hidden extras, here are the first six things to do with your new MacBook before putting it to work.
Unlock some trackpad tricks

Read more