You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Hello and thanks for a great project.
I am testing this out in my lab where I have a Windows 7 VM and a Kali host with Empire 2.0.
I blocked powershell.exe with AppLocker rules and am successfully able to stage a connection using the JS script here. However, I ran into some issues with the module functionality of Empire. Most of the interesting modules pull data from the host via Powershell. Many of the enumeration modules, such as powershell/situational_awareness/network/powerview/get_gpo, do not work if powershell.exe is blocked.
Would it be helpful to maintain a list of modules that are confirmed working within the StarFighters environment?
The text was updated successfully, but these errors were encountered:
Hi,
Sounds like a good idea. We could ask the Empire/script developers if they can make changes to their scripts, so they're not powershell.exe dependent.
Hello and thanks for a great project.
I am testing this out in my lab where I have a Windows 7 VM and a Kali host with Empire 2.0.
I blocked powershell.exe with AppLocker rules and am successfully able to stage a connection using the JS script here. However, I ran into some issues with the module functionality of Empire. Most of the interesting modules pull data from the host via Powershell. Many of the enumeration modules, such as powershell/situational_awareness/network/powerview/get_gpo, do not work if powershell.exe is blocked.
Would it be helpful to maintain a list of modules that are confirmed working within the StarFighters environment?
The text was updated successfully, but these errors were encountered: