Detecting Suspicious Powershell Execution

Detect suspicious PowerShell execution patterns including encoded commands, download cradles, AMSI bypass attempts, and constrained language mode evasion.

mukul975 Updated 24.6k repo stars

File contents

mukul975/Anthropic-Cybersecurity-Skills/tree/main/skills/detecting-suspicious-powershell-execution commit 673da1f3b0

Frequently asked questions

npx skillmds@latest add mukul975/detecting-suspicious-powershell-execution