PowerShell Script with a builtin DLL, (Fri, Sep 6th)

Attackers are always trying to bypass antivirus detection by using new techniques to obfuscate their code. I recently found a bunch of scripts that encode part of their code in Base64. The code is decoded at execution time and processed via the ‘IEX’ command:

Article Link: https://isc.sans.edu/diary/rss/25302