Empire Resource Files and Auto Runs
ID: 93ca97fe-55f4-57d4-a59c-e3d22ee46602
STIX ID: report--93ca97fe-55f4-57d4-a59c-e3d22ee46602
Feed Name: Black Hills Infosec Blog
This post introduces enhancements to PowerShell Empire that enable automation via resource files and an autorun mechanism. It shows how to batch-create and configure listeners, generate stagers for OS X and Windows, and automatically execute modules on new Python or PowerShell agents (e.g., keylogging, screenshots, text-to-speech). A unified resource file demonstrates orchestrating these tasks at startup, streamlining operator workflows and enabling consistent, repeatable setup across engagements.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
