MYSEC.TV

Home   /   RESOURCES   /   MYSEC.TV   / PowerShell Script Malware Detection

PowerShell Script Malware Detection

Tech & Sec Weekly
SHARE:

IN THIS VIDEO

Shota Shinogi is a security researcher at Macnica (Japan), pentest tools author and CTF organizer.

He is an expert in writting malware for Red Team purpose and to evade the detection from EDR, sandbox, IPS, antivirus and other security solutions.

He has more than 10 years experience on the Cyber security industries, starting his carrier with HDD Encryption, NAC, IPS, WAF, Sandbox. He has spoken in several security/hacking conferences; Black Hat, DEF CON, BSides.

He is also contributing for the education for the next generation security engineer through the Security Camp from 2015 consecutively in Japan.

In this interview, Shinogi gave highlights of his hackathon session (as an instructor at the Global Cybersecurity Camp 2023) on PowerShell based Malware detection

He shared the key factors behind PowerShell’s potency (a default tools on Windows, file-less, and hundreds of methods to obfuscate the script, making detection even that much harder).

However, with the logging feature built by Microsoft, it is possible to build tools to detect malicious PowerShell script.

Shinogi noted the approaches that the impressive results delivered by the hackathon – there were even AI-based algorithms to filter out malicious PowerShell scripts.

Recorded 16th February 2023, 4.30pm, ASEAN Cybersecurity Centre of Excellence Singapore, at the Global Cybersecurity Camp 2023 Singapore.

#powershell #macnica #shotashinogi #malware #malwaredetection #mysecuritytv

OTHER VIDEOS IN THIS SERIES

space-03
December 3, 2024
Dr Shawna Pandya is the first named Canadian female commercial astronaut, a Physician and Director of the International Institute for Astronautical Sciences Space Medicine Group. Watch Now
space-02
December 3, 2024
We welcome Australian Astronaut Katherine Bennell-Pegg back to Australia in Space TV on her first appearance at IPSEC. Watch Now
space-01
December 3, 2024
Axiom Space recently welcomed former Japan Aerospace Exploration Agency (JAXA) astronaut Koichi Wakata as a newly appointed Astronaut and Chief Technical Officer for the Asia-Pacific region. Watch Now
dragos
November 22, 2024
Are you prepared for a cyber-attack? Whether you’re managing a national or state-wide critical infrastructure organisation, or you’re a small rural provider with a lean team, the stakes are higher than ever for Australia’s Energy and Utility operators. Watch Now