PowerShell Download and Execution Cradles (85b0b087-eddf-4a2b-b033-d771fa2b9775)
Detects PowerShell download and execution cradles.
Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
---|---|---|---|---|
Command and Scripting Interpreter - T1059 (7385dfaf-6886-4229-9ecd-6fd678040830) | Attack Pattern | PowerShell Download and Execution Cradles (85b0b087-eddf-4a2b-b033-d771fa2b9775) | Sigma-Rules | 1 |