Skip to content
PowerShell Module with Security cmdlets for security work
Branch: master
Clone or download
darkoperator Update README.md
remove reference of modules that are now on their own
Latest commit 250e9b0 Aug 12, 2015
Permalink
Type Name Latest commit message Commit time
Failed to load latest commit information.
Assemblies
Audit
Database
Discovery Metasploit, Nessus, Shodan and VirusTotal module is now their own sta… May 8, 2014
Parse
PostExploitation
Registry
Utility Fixing typos Oct 3, 2013
.gitattributes
.gitignore
LICENSE.txt
Posh-SecMod.psd1
Posh-SecMod.psm1
README.md

README.md

#Posh-SecModule This module is a PowerShell v3 only module at the moment. The module is a collection of functions that I have found usefull in my day to day work as a security professional. The functions are broken in to functionality:

  • Discovery: Perform network discovery.
  • Parse: Parsers for Nmap, DNSRecon and other type of output files from security tools.
  • PostExploitation: Functions to help in performing post exploitation tasks.
  • Registry: Collection of functions for manipulating the registry in remote hosts using WMI.
  • Utilities: General purpose functions.
  • Audit: Functions that may be usful when performing audit of systems.
  • Database: Functions that are useful when interacting with databases.

ChangeLog

Version 1.3

Moved Nessus, Shodan, VirusTotal and Metasploit modules to individual ones for easier maintenance and update.

Version 1.2

  • Added Shodan submodule
  • Added VirusTotal submodule
  • Added Metasploit submodule
  • BugFixes
  • Added new fuctions in audit that work in WinPE for performing incident response and auditing (Disk MSFT Time, ADSI functions)

Licensing

The functions I have written are BSD 3-Clause Licensed. The other files I used for the project are licensed as follows:

Installation Instrcutions

To install the module from a PowerShell v3 session run:

iex (New-Object Net.WebClient).DownloadString("https://gist.github.com/darkoperator/6404266/raw/982cae410fc41f6c64e69d91fc3dda777554f241/gistfile1.ps1")
You can’t perform that action at this time.