Malicious PowerShell Detection via Machine Learning « Malicious PowerShell Detection via Machine Learning
Cyber security vendors and researchers have reported for years how PowerShell is being used by cyber threat actors to install backdoors, execute malicious code, and otherwise achieve their objectives within enterprises. Security is a cat-and-mouse game between adversaries, researchers, and blue teams. The flexibility and capability of PowerShell has made conventional detection both challenging and critical. This blog post will illustrate how FireEye is leveraging artificial intelligence and machine learning to raise the bar for adversaries that use PowerShell. PowerShell is one of the most popular tools used to carry out attacks.
Jul-12-2018, 12:12:18 GMT