Podcasts about PowerShell

Cross-platform command-line interface and scripting language for system and network administration

  • 406PODCASTS
  • 1,830EPISODES
  • 44mAVG DURATION
  • 5WEEKLY NEW EPISODES
  • May 26, 2025LATEST
PowerShell

POPULARITY

20172018201920202021202220232024

Categories



Best podcasts about PowerShell

Show all podcasts related to powershell

Latest podcast episodes about PowerShell

The PowerShell Podcast
Building Fast Tools and Smarter Workflows with Justin Grote

The PowerShell Podcast

Play Episode Listen Later May 26, 2025 60:22


In this episode of the PowerShell Podcast, we welcome back Justin Grote, a Microsoft MVP and open-source powerhouse, for an in-depth and fast-paced conversation. Fresh off his PowerShell Wednesday presentation, Justin shares the thinking behind his latest innovations, including the creation of the high-performance ExcelFast module and his evangelism for dev containers and modern development workflows.   Key topics in this episode include: Getting the most from VS Code – Justin shares power-user tips, favorite settings, and the evolution of his 1,000-line configuration file. GitHub Copilot and real-world developer productivity – How Justin's approach to AI tooling shifted after experiencing measurable value in his PowerShell workflows. Dev containers and runtime containers – A detailed breakdown of the difference, practical use cases, and how they transform collaboration, onboarding, and consistency. Excel Fast – A brand-new module optimized for high-performance reading, writing, and streaming of large Excel and CSV datasets, developed with dev containers from day one. Open-source contributions to PowerShell – Including enhanced logging for Invoke-RestMethod and building a dev container for the PowerShell repo itself. PowerShell Conf EU previews – From a 90-minute VS Code optimization deep dive to a hands-on runspaces lab with GitHub Codespaces integration. This episode is packed with practical advice, philosophy on tooling, and Justin's trademark blend of performance focus and community-first thinking. Whether you're a seasoned developer or looking to up your scripting game, you'll walk away with new ideas and resources to explore.   Guest Bio – Justin Grote Justin Grote is a Microsoft MVP, PowerShell advocate, and open-source contributor with a deep focus on automation, performance, and developer productivity. Known for tools like ModuleFast and his work improving PowerShell workflows, Justin blends real-world experience with a passion for teaching and sharing. Whether he's optimizing VS Code, contributing to the PowerShell repo, or speaking at global conferences, Justin empowers the community with practical solutions and thoughtful insight.   Links: Find Justin on GitHub, BlueSky, or on Discord (@JustinGrote): https://github.com/JustinGrote Try out ExcelFast: https://github.com/JustinGrote/ExcelFast PSConfEU Announcement: https://www.linkedin.com/feed/update/urn:li:activity:7328093268225806337/ Create Dev Container Docs: https://code.visualstudio.com/docs/devcontainers/create-dev-container SecretManagement.DpapiNG: https://github.com/jborean93/SecretManagement.DpapiNG Connect with Andrew on Socials: https://andrewpla.tech/links Catch PowerShell Wednesdays weekly at 2 PM EST on discord.gg/pdq The PowerShell Podcast hub: https://pdq.com/the-powershell-podcast  The PowerShell Podcast on YouTube: https://youtu.be/dHbWFUyUaOE

Windows Weekly (MP3)
WW 933: Live from Build - Protestors, AI agents, Edit, Doom: The Dark Ages

Windows Weekly (MP3)

Play Episode Listen Later May 22, 2025 129:02


Agentic AI is the theme of the show this year, and this time its multi-agent with orchestration! But first, we need to discuss the protestors. Paul and Richard have stories. So many stories! Build 2025 New Microsoft 365 Copilot features are rolling out now because it's a day that ends in y Tuning is the unexpected Build Bingo center square term - rolling out to agents GitHub Copilot is open source in VS Code, more Win32 app support improvements, no more fees in Microsoft Store A shift in making Windows 11 the best place for developers - some things said, some left unsaid Edge gets new AI features too of course New native app capabilities in Windows App SDK, React Native And, pre-Build, 50 million Visual Studio users Copilot for consumers does image generation now. Fun tip: You can Minecraft-ize photos OpenAI has a coding agent too, obviously And OpenAI is buying Jony Ive! Windows Administrator Protection is coming soon - And not just for businesses. This feels very much like the firewall in XP SP2, it's going to be disruptive New 24H2 features in Release Preview: New text actions in Click to Do, a lot more New 24H2 features in Dev and Beta: AI actions in File Explorer, Advanced Settings, Search improvements, more New 23H2 features, Windows 10 features in Release Preview Surface Laptop Studio RIP Calendar companion app for Windows 11/M365 Microsoft may finally put the Teams antitrust issue in the EU behind Xbox Fortnite returns to the Apple App Store Apple blocked it first, Epic complained to judge And Microsoft files a legal motion against Apple and for Epic Games Qualcomm job listing confirms Xbox plans to some degree What happens when you combine Qualcomm NPU with Nvidia GPU? Xbox May Update arrives and it's a big one Retro Classic Games for Xbox Game Pass Game Bar updates, Edge Game Assist, GeForce now etc. on PC Custom Xbox gift cards More streaming of your own games Hellblade II is coming from Xbox to PS5 Many more games coming to Xbox Game Pass across platforms Tips and Picks App pick of the week: You can try Microsoft's command line editor now Game pick of the week: Doom: The Dark Ages RunAs Radio this week: PowerShell 7.5 and DSC 3.0.0 with Jason Helmick Brown liquor pick of the week: Tamnavulin Sherry Cask Hosts: Leo Laporte, Paul Thurrott, and Richard Campbell Download or subscribe to Windows Weekly at https://twit.tv/shows/windows-weekly Check out Paul's blog at thurrott.com The Windows Weekly theme music is courtesy of Carl Franklin. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit Sponsors: spaceship.com/twit uscloud.com

All TWiT.tv Shows (MP3)
Windows Weekly 933: Live from Build

All TWiT.tv Shows (MP3)

Play Episode Listen Later May 22, 2025 129:02 Transcription Available


Agentic AI is the theme of the show this year, and this time its multi-agent with orchestration! But first, we need to discuss the protestors. Paul and Richard have stories. So many stories! Build 2025 New Microsoft 365 Copilot features are rolling out now because it's a day that ends in y Tuning is the unexpected Build Bingo center square term - rolling out to agents GitHub Copilot is open source in VS Code, more Win32 app support improvements, no more fees in Microsoft Store A shift in making Windows 11 the best place for developers - some things said, some left unsaid Edge gets new AI features too of course New native app capabilities in Windows App SDK, React Native And, pre-Build, 50 million Visual Studio users Copilot for consumers does image generation now. Fun tip: You can Minecraft-ize photos OpenAI has a coding agent too, obviously And OpenAI is buying Jony Ive! Windows Administrator Protection is coming soon - And not just for businesses. This feels very much like the firewall in XP SP2, it's going to be disruptive New 24H2 features in Release Preview: New text actions in Click to Do, a lot more New 24H2 features in Dev and Beta: AI actions in File Explorer, Advanced Settings, Search improvements, more New 23H2 features, Windows 10 features in Release Preview Surface Laptop Studio RIP Calendar companion app for Windows 11/M365 Microsoft may finally put the Teams antitrust issue in the EU behind Xbox Fortnite returns to the Apple App Store Apple blocked it first, Epic complained to judge And Microsoft files a legal motion against Apple and for Epic Games Qualcomm job listing confirms Xbox plans to some degree What happens when you combine Qualcomm NPU with Nvidia GPU? Xbox May Update arrives and it's a big one Retro Classic Games for Xbox Game Pass Game Bar updates, Edge Game Assist, GeForce now etc. on PC Custom Xbox gift cards More streaming of your own games Hellblade II is coming from Xbox to PS5 Many more games coming to Xbox Game Pass across platforms Tips and Picks App pick of the week: You can try Microsoft's command line editor now Game pick of the week: Doom: The Dark Ages RunAs Radio this week: PowerShell 7.5 and DSC 3.0.0 with Jason Helmick Brown liquor pick of the week: Tamnavulin Sherry Cask Hosts: Leo Laporte, Paul Thurrott, and Richard Campbell Download or subscribe to Windows Weekly at https://twit.tv/shows/windows-weekly Check out Paul's blog at thurrott.com The Windows Weekly theme music is courtesy of Carl Franklin. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit Sponsors: spaceship.com/twit uscloud.com

Radio Leo (Audio)
Windows Weekly 933: Live from Build

Radio Leo (Audio)

Play Episode Listen Later May 22, 2025 129:02 Transcription Available


Agentic AI is the theme of the show this year, and this time its multi-agent with orchestration! But first, we need to discuss the protestors. Paul and Richard have stories. So many stories! Build 2025 New Microsoft 365 Copilot features are rolling out now because it's a day that ends in y Tuning is the unexpected Build Bingo center square term - rolling out to agents GitHub Copilot is open source in VS Code, more Win32 app support improvements, no more fees in Microsoft Store A shift in making Windows 11 the best place for developers - some things said, some left unsaid Edge gets new AI features too of course New native app capabilities in Windows App SDK, React Native And, pre-Build, 50 million Visual Studio users Copilot for consumers does image generation now. Fun tip: You can Minecraft-ize photos OpenAI has a coding agent too, obviously And OpenAI is buying Jony Ive! Windows Administrator Protection is coming soon - And not just for businesses. This feels very much like the firewall in XP SP2, it's going to be disruptive New 24H2 features in Release Preview: New text actions in Click to Do, a lot more New 24H2 features in Dev and Beta: AI actions in File Explorer, Advanced Settings, Search improvements, more New 23H2 features, Windows 10 features in Release Preview Surface Laptop Studio RIP Calendar companion app for Windows 11/M365 Microsoft may finally put the Teams antitrust issue in the EU behind Xbox Fortnite returns to the Apple App Store Apple blocked it first, Epic complained to judge And Microsoft files a legal motion against Apple and for Epic Games Qualcomm job listing confirms Xbox plans to some degree What happens when you combine Qualcomm NPU with Nvidia GPU? Xbox May Update arrives and it's a big one Retro Classic Games for Xbox Game Pass Game Bar updates, Edge Game Assist, GeForce now etc. on PC Custom Xbox gift cards More streaming of your own games Hellblade II is coming from Xbox to PS5 Many more games coming to Xbox Game Pass across platforms Tips and Picks App pick of the week: You can try Microsoft's command line editor now Game pick of the week: Doom: The Dark Ages RunAs Radio this week: PowerShell 7.5 and DSC 3.0.0 with Jason Helmick Brown liquor pick of the week: Tamnavulin Sherry Cask Hosts: Leo Laporte, Paul Thurrott, and Richard Campbell Download or subscribe to Windows Weekly at https://twit.tv/shows/windows-weekly Check out Paul's blog at thurrott.com The Windows Weekly theme music is courtesy of Carl Franklin. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit Sponsors: spaceship.com/twit uscloud.com

Windows Weekly (Video HI)
WW 933: Live from Build - Protestors, AI agents, Edit, Doom: The Dark Ages

Windows Weekly (Video HI)

Play Episode Listen Later May 22, 2025 129:02


Agentic AI is the theme of the show this year, and this time its multi-agent with orchestration! But first, we need to discuss the protestors. Paul and Richard have stories. So many stories! Build 2025 New Microsoft 365 Copilot features are rolling out now because it's a day that ends in y Tuning is the unexpected Build Bingo center square term - rolling out to agents GitHub Copilot is open source in VS Code, more Win32 app support improvements, no more fees in Microsoft Store A shift in making Windows 11 the best place for developers - some things said, some left unsaid Edge gets new AI features too of course New native app capabilities in Windows App SDK, React Native And, pre-Build, 50 million Visual Studio users Copilot for consumers does image generation now. Fun tip: You can Minecraft-ize photos OpenAI has a coding agent too, obviously And OpenAI is buying Jony Ive! Windows Administrator Protection is coming soon - And not just for businesses. This feels very much like the firewall in XP SP2, it's going to be disruptive New 24H2 features in Release Preview: New text actions in Click to Do, a lot more New 24H2 features in Dev and Beta: AI actions in File Explorer, Advanced Settings, Search improvements, more New 23H2 features, Windows 10 features in Release Preview Surface Laptop Studio RIP Calendar companion app for Windows 11/M365 Microsoft may finally put the Teams antitrust issue in the EU behind Xbox Fortnite returns to the Apple App Store Apple blocked it first, Epic complained to judge And Microsoft files a legal motion against Apple and for Epic Games Qualcomm job listing confirms Xbox plans to some degree What happens when you combine Qualcomm NPU with Nvidia GPU? Xbox May Update arrives and it's a big one Retro Classic Games for Xbox Game Pass Game Bar updates, Edge Game Assist, GeForce now etc. on PC Custom Xbox gift cards More streaming of your own games Hellblade II is coming from Xbox to PS5 Many more games coming to Xbox Game Pass across platforms Tips and Picks App pick of the week: You can try Microsoft's command line editor now Game pick of the week: Doom: The Dark Ages RunAs Radio this week: PowerShell 7.5 and DSC 3.0.0 with Jason Helmick Brown liquor pick of the week: Tamnavulin Sherry Cask Hosts: Leo Laporte, Paul Thurrott, and Richard Campbell Download or subscribe to Windows Weekly at https://twit.tv/shows/windows-weekly Check out Paul's blog at thurrott.com The Windows Weekly theme music is courtesy of Carl Franklin. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit Sponsors: spaceship.com/twit uscloud.com

All TWiT.tv Shows (Video LO)
Windows Weekly 933: Live from Build

All TWiT.tv Shows (Video LO)

Play Episode Listen Later May 22, 2025 129:02 Transcription Available


Agentic AI is the theme of the show this year, and this time its multi-agent with orchestration! But first, we need to discuss the protestors. Paul and Richard have stories. So many stories! Build 2025 New Microsoft 365 Copilot features are rolling out now because it's a day that ends in y Tuning is the unexpected Build Bingo center square term - rolling out to agents GitHub Copilot is open source in VS Code, more Win32 app support improvements, no more fees in Microsoft Store A shift in making Windows 11 the best place for developers - some things said, some left unsaid Edge gets new AI features too of course New native app capabilities in Windows App SDK, React Native And, pre-Build, 50 million Visual Studio users Copilot for consumers does image generation now. Fun tip: You can Minecraft-ize photos OpenAI has a coding agent too, obviously And OpenAI is buying Jony Ive! Windows Administrator Protection is coming soon - And not just for businesses. This feels very much like the firewall in XP SP2, it's going to be disruptive New 24H2 features in Release Preview: New text actions in Click to Do, a lot more New 24H2 features in Dev and Beta: AI actions in File Explorer, Advanced Settings, Search improvements, more New 23H2 features, Windows 10 features in Release Preview Surface Laptop Studio RIP Calendar companion app for Windows 11/M365 Microsoft may finally put the Teams antitrust issue in the EU behind Xbox Fortnite returns to the Apple App Store Apple blocked it first, Epic complained to judge And Microsoft files a legal motion against Apple and for Epic Games Qualcomm job listing confirms Xbox plans to some degree What happens when you combine Qualcomm NPU with Nvidia GPU? Xbox May Update arrives and it's a big one Retro Classic Games for Xbox Game Pass Game Bar updates, Edge Game Assist, GeForce now etc. on PC Custom Xbox gift cards More streaming of your own games Hellblade II is coming from Xbox to PS5 Many more games coming to Xbox Game Pass across platforms Tips and Picks App pick of the week: You can try Microsoft's command line editor now Game pick of the week: Doom: The Dark Ages RunAs Radio this week: PowerShell 7.5 and DSC 3.0.0 with Jason Helmick Brown liquor pick of the week: Tamnavulin Sherry Cask Hosts: Leo Laporte, Paul Thurrott, and Richard Campbell Download or subscribe to Windows Weekly at https://twit.tv/shows/windows-weekly Check out Paul's blog at thurrott.com The Windows Weekly theme music is courtesy of Carl Franklin. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit Sponsors: spaceship.com/twit uscloud.com

ITSPmagazine | Technology. Cybersecurity. Society
Why Simplicity Might Be the Missing Ingredient in Your Zero Trust Strategy | A Brand Story with Rob Allen from ThreatLocker | An RSAC Conference 2025 Post-Event Brand Story

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later May 21, 2025 17:29


At RSAC Conference 2025, the conversation with Rob Allen, Chief Product Officer at ThreatLocker, centered on something deceptively simple: making cybersecurity effective by making it manageable.During this on-location recap episode, Rob shares how ThreatLocker cut through the noise of flashy booths and AI buzzwords by focusing on meaningful, face-to-face conversations with customers and prospects. Their booth was an open, no-frills space—designed for real dialogue, not distractions. What caught people's attention, though, wasn't the booth layout—it was a live demonstration of a PowerShell-based attack using a rubber ducky device. It visually captured how traditional tools often miss malicious scripts and how ThreatLocker's controls shut it down immediately. That kind of simplicity, Rob explains, is the real differentiator.Zero Trust Is a Journey—But It Doesn't Have to Be ComplicatedOne key message Rob emphasizes is that true security doesn't come from piling on more tools. Too many organizations rely on overlapping detection and response solutions, which leads to confusion and technical debt. “If you have five different jackets and they're all winter coats, you're not prepared for summer,” Sean Martin jokes, reinforcing Rob's point that layers should be distinct, not redundant.ThreatLocker's approach simplifies Zero Trust by focusing on proactive control—limiting what can execute or communicate in the first place. Rob also points to the importance of vendor consolidation—not just from a purchasing standpoint but from an operational one. With ThreatLocker, multiple security capabilities are built natively into a single platform with one agent and one portal, avoiding the chaos of disjointed systems.From Technical Wins to Human ConnectionsThe conversation wraps with a reminder that cybersecurity isn't just about tools—it's about the people and community that make the work worthwhile. Rob, Marco Ciappelli, and Sean Martin reflect on their shared experiences around the event and even the lessons learned over a slice of Detroit-style pizza. While the crust may have been debatable, the camaraderie and commitment to doing security better were not.Learn more about ThreatLocker: https://itspm.ag/threatlocker-r974⸻Guest: Rob Allen, Chief Product Officer, ThreatLocker | https://www.linkedin.com/in/threatlockerrob/ResourcesLearn more and catch more stories from ThreatLocker: https://www.itspmagazine.com/directory/threatlockerLearn more and catch more stories from RSA Conference 2025 coverage: https://www.itspmagazine.com/rsac25______________________Keywords:sean martin, marco ciappelli, rob allen, cybersecurity, zero trust, threat prevention, powerShell, vendor consolidation, rsac2025, endpoint security, brand story, brand marketing, marketing podcast, brand story podcast______________________Catch all of our event coverage: https://www.itspmagazine.com/technology-and-cybersecurity-conference-coverageWant to tell your Brand Story Briefing as part of our event coverage? Learn More 

RunAs Radio
PowerShell 7.5 and DSC 3.0.0 with Jason Helmick

RunAs Radio

Play Episode Listen Later May 21, 2025 36:47


What's new in PowerShell 7.5? Richard talks to Jason Helmick about the latest version of PowerShell. Jason talks about 7.5 being a version with plenty of community contributions and what that means for everyone. He also discusses 7.6, which will be released as a long-term support version of PowerShell synchronized with .NET 10. Then, on to Desired State Configuration 3.0.0, which makes DSC work effectively across platforms, with or without PowerShell itself! 7.5 is a great version - are you up to date?LinksPowerShell 7.5PowerShell on GitHubDesired State Configuration 3.0.0WinGet ConfigurationSystem Configuration Tools in WindowsRecorded April 4, 2025

The PowerShell Podcast
Building Confidence and Community with PowerShell with Brock Bingham

The PowerShell Podcast

Play Episode Listen Later May 19, 2025 38:20


In this episode of the PowerShell Podcast, we sit down with Brock Bingham, a longtime PowerShell enthusiast, educator, and community advocate. Recorded live from PDQ Headquarters in Salt Lake City, Utah, this episode captures the high energy and camaraderie of a PowerShell Wednesday in person. Brock shares his journey from PowerShell beginner to mentor, his passion for community building, and the power of sharing knowledge with others. Key topics in this episode include: Overcoming Stage Fright and Imposter Syndrome – How PowerShell Wednesday and live presentations have helped Brock gain confidence. The Power of Documentation and Knowledge Sharing – Why good documentation and teaching others are critical for long-term growth. Community Connection and Growth – How engaging with the PowerShell community can transform your career and personal development. Exploring PowerShell Tools and Projects – From using Pester for testing to building cool GUIs with MDGRS, Brock dives into the creative side of PowerShell. Learning from Failure and Embracing Red Text – Why mistakes are a critical part of the learning journey. Finding Your Voice in the PowerShell World – Brock's advice for building confidence, sharing your work, and making an impact. From caffeine-fueled coding sessions to discovering the power of collaboration, this episode is a heartfelt conversation about growth, mentorship, and building a career around PowerShell. Join the conversation: Connect with Brock Bingham on LinkedIn: https://www.linkedin.com/in/jonathanbrockbingham/ Connect with Brock on BlueSky: https://bsky.app/profile/brockbingham.bsky.social Connect with Andrew: https://andrewpla.tech/links Join PowerShell Wednesdays every Wednesday at 2 PM EST on discord.gg/pdq The PowerShell Podcast: https://pdq.com/the-powershell-podcast The PowerShell Podcast on YouTube: The PowerShell Podcast: https://pdq.com/the-powershell-podcast 

The PowerShell Podcast
PowerShell, Security, and the Path to Mastery.

The PowerShell Podcast

Play Episode Listen Later May 12, 2025 62:09


In this episode of the PowerShell Podcast, we bring you a special double feature! We chat with Bogdan Calapod live from PDQ HQ, a seasoned security expert and co-founder of Coda, who reflects on his path from hackathon projects to helping organizations secure their environments. Then, we sit down with Lucas Allman live from the PowerShell + DevOps Global Summit, where he shares his journey from podcast listener to conference presenter. Key topics in this episode include: Finding Your Place in the PowerShell Community – How Lucas went from listening to the PowerShell Podcast to presenting at Summit. Overcoming Stage Fright and Imposter Syndrome – Lucas's experience giving his first lightning demo to a room full of PowerShell pros. The Power of Personal Growth and Knowledge Sharing – Building confidence, contributing to internal user groups, and advocating for automation. Building Security from the Ground Up – Bogdan's journey from hackathon developer to security co-founder, including the creation of Coda. Simplifying Security for the Real World – Lessons learned from building tools to automate vulnerability detection and remediation. Staying Curious and Always Learning – Why continuous education, knowledge sharing, and community engagement are essential for long-term success. This episode captures the spirit of learning, teaching, and growth that defines the PowerShell community. Whether you're a newcomer or a seasoned pro, this double feature has insights for everyone.   Links: Connect with Lucas Allman on LinkedIn: https://www.linkedin.com/in/lucas-allman-407a1055/ Follow Bogdan on GitHub: https://github.com/bogdan-calapod Follow Andrew: https://andrewpla.tech/links Join PowerShell Wednesdays every Wednesday at 2 PM EST on discord.gg/pdq The PowerShell Podcast on YouTube: https://youtu.be/Jhxr2GB9-Mg 

7 Minute Security
7MS #674: Tales of Pentest Pwnage – Part 71

7 Minute Security

Play Episode Listen Later May 9, 2025 49:00


Today's tale of pentest pwnage is another great one!  We talk about: The SPNless RBCD attack (covered in more detail in this episode) Importance of looking at all “branches” of outbound permissions that your user has in BloodHound This devilishly effective MSOL-account-stealing PowerShell script (obfuscate it first!) A personal update on my frustration with ringing in my ears

ITSPmagazine | Technology. Cybersecurity. Society
From Reactive to Proactive: Building Guardrails That Actually Protect | A Brand Story with Rob Allen from ThreatLocker | An On Location RSAC Conference 2025 Brand Story

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later May 5, 2025 21:05


In this on-location episode recorded at the RSAC Conference, Sean Martin and Marco Ciappelli sit down once again with Rob Allen, Chief Product Officer at ThreatLocker, to unpack what Zero Trust really looks like in practice—and how organizations can actually get started without feeling buried by complexity.Rather than focusing on theory or buzzwords, Rob lays out a clear path that begins with visibility. “You can't control what you can't see,” he explains. The first step toward Zero Trust is deploying lightweight agents that automatically build a view of the software running across your environment. From there, policies can be crafted to default-deny unknown applications, while still enabling legitimate business needs through controlled exceptions.The Zero Trust Mindset: Assume Breach, Limit AccessRob echoes the federal mandate definition of Zero Trust: assume a breach has already occurred and limit access to only what is needed. This assumption flips the defensive posture from reactive to proactive. It's not about waiting to detect bad behavior—it's about blocking the behavior before it starts.The ThreatLocker approach stands out because it focuses on removing the traditional “heavy lift” often associated with Zero Trust implementations. Rob highlights how some organizations have spent years trying (and failing) to activate overly complex systems, only to end up stuck with unused tools and endless false positives. ThreatLocker's automation is designed to lower that barrier and get organizations to meaningful control faster.Modern Threats, Simplified DefensesAs AI accelerates the creation of polymorphic malware and low-code attack scripts, Zero Trust offers a counterweight. Deny-by-default policies don't require knowing every new threat—just clear guardrails that prevent unauthorized activity, no matter how it's created. Whether it's PowerShell scripts exfiltrating data or AI-generated exploits, proactive controls make it harder for attackers to operate undetected.This episode reframes Zero Trust from an overwhelming project into a series of achievable, common-sense steps. If you're ready to hear what it takes to stop chasing false positives and start building a safer, more controlled environment, this conversation is for you.Learn more about ThreatLocker: https://itspm.ag/threatlocker-r974Note: This story contains promotional content. Learn more.Guest: Rob Allen, Chief Product Officer, ThreatLocker | https://www.linkedin.com/in/threatlockerrob/ResourcesLearn more and catch more stories from ThreatLocker: https://www.itspmagazine.com/directory/threatlockerLearn more and catch more stories from RSA Conference 2025 coverage: https://www.itspmagazine.com/rsac25______________________Keywords:sean martin, marco ciappelli, rob allen, zero trust, cybersecurity, visibility, access control, proactive defense, ai threats, policy automation, brand story, brand marketing, marketing podcast, brand story podcast______________________Catch all of our event coverage: https://www.itspmagazine.com/technology-and-cybersecurity-conference-coverageWant to tell your Brand Story Briefing as part of our event coverage? Learn More 

The PowerShell Podcast
Growing with PowerShell and Community Support - Joshua Dearing

The PowerShell Podcast

Play Episode Listen Later May 5, 2025 54:20


In this episode of the PowerShell Podcast, we sit down with Joshua Dearing, aka Fortress, to explore his personal and professional growth through PowerShell, community engagement, and saying yes to new opportunities. Fresh off his first PowerShell Wednesday presentation, Joshua shares the story of how he overcame imposter syndrome, started his blog, and found confidence by getting involved in the PowerShell community. Key topics in this episode include: Joshua's journey with PowerShell and the community What it was like presenting at PowerShell Wednesday for the first time Starting a blog using GitHub Pages, Jekyll, and PowerShell to sync with Obsidian Navigating imposter syndrome Building a culture of feedback and open communication in the workplace The impact of community, mentorship, and putting yourself out there Joshua also discusses the value of small wins, how to advocate for yourself professionally, and the importance of being visible, even when you automate away the work. From scripting with style using Spectre Console to leaning into vulnerability and reflection, this episode is a heartfelt conversation about growth, kindness, and collaboration. Join the conversation:   Bio and Links: Josh is a help desk technician turned PowerShell enthusiast who transformed his career through automation—and he's on a mission to help others do the same. With a knack for simplifying software and device setups, he's all about making tech more accessible for end-users while fostering strong connections in the community. Leveraging PDQ products to streamline deployments and management, he's passionate about helping IT pros work smarter, not harder. Follow Joshua on LinkedIn: https://www.linkedin.com/in/joshuadearing/ Josh's BlueSky: https://bsky.app/profile/dearing.dev Check out his blog on GitHub pages: https://www.dearing.dev/posts/Building-a-Website-with-GitHub-Pages/ PwshSpectreConsole https://github.com/ShaunLawrie/PwshSpectreConsole View more PowerShell videos, including PowerShell Wednesdays, on the PDQ Youtube:  https://www.youtube.com/@pdq Join PowerShell Wednesdays every Wednesday at 2 PM EST on https://discord.gg/pdq Andrew video about WinUIShell: https://youtu.be/-aDWww5SWOs Connect with Andrew on LinkedIn: https://www.linkedin.com/in/andrewplatech/ The PowerShell Podcast: https://pdq.com/the-powershell-podcast

The PowerShell Podcast
Lessons in Leadership from PowerShell Pioneers Jeffrey Snover and Don Jones

The PowerShell Podcast

Play Episode Listen Later Apr 28, 2025 68:55


In this very special episode of the PowerShell Podcast, we sit down with two legends of the PowerShell world: Jeffrey Snover, the inventor of PowerShell, and Don Jones, bestselling author, teacher, and longtime PowerShell community builder. Recorded live at the PowerShell + DevOps Global Summit, this conversation is packed with personal insights, impactful moments, and the kind of storytelling that only Snover and Jones can deliver.  Key topics in this episode include:  The origin stories of PowerShell and how Jeffrey and Don's paths crossed at a pivotal moment.  The evolution of PowerShell as a scripting language, community, and ecosystem.  The importance of storytelling in tech, from teaching to team-building to leadership.  The shift from individual contributor to leader and how both hosts navigated that path with intention.  The power of community: real stories from users whose lives were changed by learning PowerShell.  Career advice for the next generation of IT professionals and community contributors.  Along the way, we hear hilarious stories from the early days of PowerShell development, honest reflections on growth and failure, and powerful reminders that vulnerability, repetition, and kindness are core to success in any career. Whether you're new to PowerShell or a long-time community member, this episode is a true masterclass in leadership, learning, and legacy.  Bio and links:  Jeffrey Snover is the inventor of PowerShell, Microsoft Technical Fellow, and a legendary figure in the IT and DevOps communities. With a background in distributed systems, Jeffrey led the development of PowerShell to revolutionize system management and automation on Windows. Known for his visionary leadership and storytelling, Jeffrey has played a pivotal role in shaping modern IT practices. His work continues to inspire technologists around the world to build, share, and lead with intention and clarity.  Don Jones is a bestselling author, speaker, educator, and one of the most influential figures in the PowerShell community. With decades of experience in IT, Don has written numerous foundational books on PowerShell, including Learn Windows PowerShell in a Month of Lunches. He co-founded the PowerShell + DevOps Global Summit and has mentored countless professionals through his teaching, writing, and leadership. Don is a passionate advocate for storytelling in tech, career development, and building inclusive communities that empower the next generation.  https://www.linkedin.com/in/jeffreysnover/  https://www.linkedin.com/in/concentrateddon/  https://www.linkedin.com/in/andrewplatech/  https://www.powershellsummit.org/  The PowerShell Podcast: https://pdq.com/the-powershell-podcast  The PowerShell Podcast on YouTube: https://youtu.be/ooyO8GsHVTs   

The PowerShell Podcast
The Powershell Podcast Summit sessions with Adam Rivera, Asmar Fontenot, & Luis Orta

The PowerShell Podcast

Play Episode Listen Later Apr 21, 2025 63:43


In this episode of the PowerShell Podcast, we bring you another Summit Sessions special recorded live at the PowerShell + DevOps Global Summit 2025! This episode is a celebration of first-time attendees, newcomers to the PowerShell community, and those discovering their voice in tech. Andrew Pla sits down with passionate IT professionals who share their personal stories of growth, connection, and finding purpose through PowerShell and community. Whether you're just starting your automation journey or you're looking to reconnect with your "why," this episode is packed with inspiration, encouragement, and honest reflections on what it means to grow in public, contribute meaningfully, and be part of something bigger. Guests in this episode include: Adam Rivera – An IT manager turned PowerShell enthusiast, Adam shares his Summit experience, the joy of hands-on learning, and why he wants to empower his users with automation. His journey from podcast listener to Summit participant shows the real impact of showing up and taking a chance on growth. Asmar Fontenot – First-time Summit attendee who speaks passionately about soft skills, mentorship, and embracing a "jack of all trades" background. Asmar reflects on his career, the power of face-to-face connection, and why helping others and being authentic are his driving forces in tech. https://www.linkedin.com/in/asmar-fontenot/ Luis Orta – A cloud systems engineer serving rural health clinics across the Pacific Northwest, Luis brings a powerful sense of mission and purpose to his work. He shares how PowerShell helps enable critical care for underserved communities, and how creativity, through music and code, fuels meaningful progress. https://www.linkedin.com/in/luisrorta/ Links: https://www.linkedin.com/in/andrewplatech/ The PowerShell Podcast: https://pdq.com/the-powershell-podcast  The PowerShell Podcast on YouTube: https://youtu.be/ChItOJcsf48  

Azure DevOps Podcast
April Yoho: GitHub in 2025 - Episode 346

Azure DevOps Podcast

Play Episode Listen Later Apr 21, 2025 37:56


April is a senior developer advocate and DevOps practice lead for GitHub, specializing in application transformation and DevOps ways of working. Her focus is working on Microsoft Azure to take customers on a journey from legacy technology to serverless and containers, where code comes first, while enabling them to take full advantage of DevOps. April was previously a cloud consultant and solution architect for various partners in the UK and brings her years of experience in helping customers plan their journey. She also serves as a Hashicorp Ambassador, dedicating much of her time to working with infrastructure as code (IaC). She enjoys making Azure and its features more accessible. Her technical expertise includes PowerShell, Golang, and occasionally TypeScript and C#. In her free time, April enjoys outdoor activities such as hiking, skiing, and scuba diving. Additionally, she is a triathlete who competes in Ironman and Half Ironman events.   Topics of Discussion: [1:57] April's career journey — from U.S. data center outages and 72-hour shifts to discovering cloud and automation after relocating to the U.K. [3:53] How an early Azure migration in 2013 ignited her passion for infrastructure as code and DevOps. [5:33] GitHub's evolution into a full end-to-end enterprise platform, with a major focus on security, scalability, and developer productivity. [6:51] Code Spaces: VS Code in the cloud with 60 hours free per user — solving compute and environment parity issues across teams. [10:00] GitHub's internal use of Code Spaces: every GitHub employee (aka “Hubber”) uses it to work on the github.com codebase. [12:29] Code Spaces' advantages in lab and hackathon settings, including speed, security, and reliability. [13:55] Breakdown of GitHub Copilot's flavors: chat, inline suggestions, edits, pull request reviews, and agentic AI. [17:12] Real-world uses of Copilot Edits: generating documentation, writing tests, and making cohesive multi-file changes. [20:00] GitHub's goal of enabling the “10x developer,” not just in speed but in quality, consistency, and creativity. [25:00] How AI tooling is changing how we think about architecture, code reuse, and shrinking monoliths into modular libraries. [30:00] Prompting strategies: how different cultures and languages impact the way developers interact with AI tools. [32:47] GitHub Workspaces: start from requirements, generate a plan, and get a head start on writing and converting code. [35:00] April's belief that AI-driven development is already here, and edits are one of the best ways to experience that transformation now.   Mentioned in this Episode: Clear Measure Way Architect Forum Software Engineer Forum Programming with Palermo — New Video Podcast! Email us at programming@palermo.net. Clear Measure, Inc. (Sponsor) .NET DevOps for Azure: A Developer's Guide to DevOps Architecture the Right Way, by Jeffrey Palermo .Net Aspire and Data API builder with the Community April on GitHub April on LinkedIn April on X Universe 2024: GitHub Embraces Developer Choice with Multi-Model Copilot, New App Tool GitHub Spark, and AI-Native Developer Experience CoPilot Workspace GitHub Spark   Want to Learn More? Visit AzureDevOps.Show for show notes and additional episodes.

ITSPmagazine | Technology. Cybersecurity. Society
From Phishing to Full Compromise in Under an Hour: Automation Is Fueling the Next Wave of Cyber Threats | A LevelBlue Brand Story with Kenneth Ng

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Apr 18, 2025 36:02


LevelBlue's latest Threat Trends Report pulls no punches: phishing, malware, and ransomware attacks are not just continuing—they're accelerating. In this episode of ITSPmagazine's Brand Story podcast, hosts Sean Martin and Marco Ciappelli are joined by Kenneth Ng, a threat hunter and lead incident responder on LevelBlue's Managed Detection and Response (MDR) team, to unpack the findings and recommendations from the report.Phishing as a Service and the Surge in Email CompromisesOne of the most alarming trends highlighted by Kenneth is the widespread availability of Phishing-as-a-Service (PhaaS) kits, including names like RaccoonO365, Mamba 2FA, and Greatness. These kits allow attackers with little to no technical skill to launch sophisticated campaigns that bypass multi-factor authentication (MFA) by hijacking session tokens. With phishing attacks now leading to full enterprise compromises, often through seemingly innocuous Microsoft 365 access, the threat is more serious than ever.Malware Is Smarter, Simpler—and It's Spreading FastMalware, particularly fake browser updates and credential stealers like Lumma Stealer, is also seeing a rise in usage. Kenneth points out the troubling trend of malware campaigns that rely on basic user interactions—like copying and pasting text—leading to full compromise through PowerShell or command prompt access. Basic group policy configurations (like blocking script execution for non-admin users) are still underutilized defenses.Ransomware: Faster and More Automated Than EverThe speed of ransomware attacks has increased dramatically. Kenneth shares real-world examples where attackers go from initial access to full domain control in under an hour—sometimes in as little as ten minutes—thanks to automation, remote access tools, and credential harvesting. This rapid escalation leaves defenders with very little room to respond unless robust detection and prevention measures are in place ahead of time.Why This Report MattersRather than presenting raw data, LevelBlue focuses on actionable insights. Each major finding comes with recommendations that can be implemented regardless of company size or maturity level. The report is a resource not just for LevelBlue customers, but for any organization looking to strengthen its defenses.Be sure to check out the full conversation and grab the first edition of the Threat Trends Report ahead of LevelBlue's next release this August—and stay tuned for their updated Futures Report launching at RSA Conference on April 28.Learn more about LevelBlue: https://itspm.ag/levelblue266f6cNote: This story contains promotional content. Learn more.Guest: Kenneth Ng, threat hunter and lead incident responder on LevelBlue's Managed Detection and Response (MDR) team | On LinkedIn: https://www.linkedin.com/in/ngkencyber/ResourcesDownload the LevelBlue Threat Trends Report | Edition One: https://itspm.ag/levelbyqdpLearn more and catch more stories from LevelBlue: https://www.itspmagazine.com/directory/levelblueLearn more about ITSPmagazine Brand Story Podcasts: https://www.itspmagazine.com/purchase-programsNewsletter Archive: https://www.linkedin.com/newsletters/tune-into-the-latest-podcasts-7109347022809309184/Business Newsletter Signup: https://www.itspmagazine.com/itspmagazine-business-updates-sign-upAre you interested in telling your story?https://www.itspmagazine.com/telling-your-story

RunAs Radio
How to Not Hate PowerShell with Barbara Forbes

RunAs Radio

Play Episode Listen Later Apr 16, 2025 36:54


Are some of your team members starting to hate PowerShell? Richard talks to Barbara Forbes about her experiences with teams frustrated by PowerShell. Barbara talks about overcomplicating PowerShell scripts—the kind the most senior folks can create but no one else can maintain. Eventually, nobody will want to touch those scripts. Then there is the question of business value—does everything need to be automated? And by how much? Often, the appropriate solution solves 80% of the cases; the other 20% are best done by hand because the cost and complexity of the last 20% are too high. Focus on the return on investment for the business, and you'll keep the love of PowerShell alive! LinksPowerShellPester TestingGitHub CopilotBicepRecorded February 24, 2025

The PowerShell Podcast
The PowerShell Podcast Summit 2025 - Missy, Leslie, & Hailey

The PowerShell Podcast

Play Episode Listen Later Apr 14, 2025 49:26


In this episode of the PowerShell Podcast, we bring you a special edition live from the PowerShell + DevOps Global Summit 2025 — the Summit Sessions! This episode is packed with energy, community stories, and career inspiration as Andrew Pla chats with community leaders, organizers, and first-time contributors about what makes this event and the PowerShell community so special. Guests in this episode include: Missy Januszko – Longtime content director of the Summit reflects on her years of shaping the conference, what makes a great CFP (Call for Papers), and her decision to pass the torch to the next generation of leaders. Leslie Brendible– Steps up in a big way to help lead this year's Summit, sharing her background in event planning, her love for connecting people, and her thoughts on community and representation. Haley Phillips – PowerShell MVP and champion of soft skills, vulnerability, and personal development in tech. Haley dives into mentorship, therapy, imposter syndrome, and how modeling behavior can shape the culture of teams and communities. The PowerShell Podcast on YouTube: https://youtu.be/87axet9zvyQ The PowerShell Podcast: https://pdq.com/the-powershell-podcast  

The PowerShell Podcast
PowerShell Summit Bar Sessions 2025 - David R

The PowerShell Podcast

Play Episode Listen Later Apr 10, 2025 13:26


In this casual bar-session chat recorded at the PowerShell + DevOps Global Summit 2025, host Andrew Pla sits down with David R, a first-time attendee with a passion for learning PowerShell. David shares how the PowerShell Podcast itself inspired him to attend and helped shape his scripting journey. What began as a work assignment turned into a powerful learning path, community connection, and a personal transformation.

The PowerShell Podcast
PowerShell Summit Bar Sessions 2025 - Frank Lesniak

The PowerShell Podcast

Play Episode Listen Later Apr 9, 2025 24:06


In this episode of the PowerShell Summit 2025 Bar Sessions, Frank Lesniak makes a triumphant return to the podcast. Frank has taken the reigns In this two-sided interview, Frank flips the script and interviews Andrew, but only after we talk about how his week is going, fine dining, how to grow in your career and capitalize on opportunity, the value of empowering others, and more!   Links: The PowerShell Podcast: https://pdq.com/the-powershell-podcast  The PowerShell Podcast on YouTube: https://youtu.be/HoYKzgiJxkk  

The PowerShell Podcast
PowerShell Summit Bar Sessions 2025 - Steven Judd

The PowerShell Podcast

Play Episode Listen Later Apr 8, 2025 38:46


In this episode of the PowerShell Summit Bar Sessions we talk with Steven Judd. We talk about Summit, Sean Kearney Spirit award, community, career, and more! Steven Judd is a 25+ year IT Pro Links: Get more updates from Summit from LinkedIn: https://www.linkedin.com/in/andrewplatech/ https://blog.stevenjudd.com/My-Content-List/ https://www.linkedin.com/in/stevenjudd/ https://www.powershellsummit.org/ https://mvp.stevenjudd.com https://mydemoswork.com https://store.stevenjudd.com  all proceeds go towards buying more swag to give away (he has a lot, trust me) PowerShell Podcast on YouTube: https://youtu.be/6WTIsOnT5PU The PowerShell Podcast: https://pdq.com/the-powershell-podcast   

The PowerShell Podcast
Discovering the Deeper Layers of PowerShell with Jeff Hicks

The PowerShell Podcast

Play Episode Listen Later Apr 7, 2025 46:32


In this episode of the PowerShell Podcast, we're joined by the legendary Jeff Hicks, PowerShell educator, author, speaker, and community pillar. With decades of experience shaping the PowerShell landscape, Jeff returns to the podcast to share insights from his latest projects, discuss the evolution of the community, and offer wisdom for both new and experienced PowerShell users. From PowerShell Summit to writing foundational books and building up new contributors, Jeff continues to play a critical role in shaping the PowerShell ecosystem.   Key topics in this episode include: The human side of scripting – Writing PowerShell that is usable, flexible, and considerate of others' needs. Behind the PowerShell Pipeline – Jeff's new LeanPub book exploring deeper PowerShell principles. Fundamental PowerShell commands – Get-Help, Get-Command, Get-Member, and why every PowerShell user should master them. How to troubleshoot PowerShell like a pro – Why starting simple, verbose logging, and clear design make all the difference. Reflections on PowerShell Summit – The importance of community, hallway conversations, and building the next wave of contributors. Teaching as a path to mastery – Why giving back through mentorship, writing, and speaking strengthens both your skills and the community. Jeff also shares his advice for nervous first-time speakers and attendees, and why being kind is one of the most impactful things you can do - both in and outside of tech.   Bio and Links:  Jeffery Hicks is an IT Pro veteran with 35 years of experience, much of it spent as an IT infrastructure professional specializing in Microsoft server technologies with an emphasis on automation and efficiency. He has been a Microsoft MVP since 2007 for his work in PowerShell.   Jeff is a respected and well-known author, teacher, and consultant. He has taught or presented PowerShell content and the benefits of automation to IT Pros worldwide since its inception. He has authored, co-authored, and edited several books, contributed to numerous online sites, and, back when it was still a thing, several print publications. Jeff is a Pluralsight author and a frequent speaker at technology conferences and user groups.  Check out all of Jeff's links and follow him here: https://jdhitsolutions.github.io/  Check out his book Behind the PowerShell Pipeline on LeanPub: https://leanpub.com/behind-the-pspipeline  Join PowerShell Wednesdays at 2 PM EST on discord.gg/pdq  Connect with Andrew on LinkedIn and share your PowerShell story: https://www.linkedin.com/in/andrewplatech/  The PowerShell Podcast: https://pdq.com/the-powershell-podcast The PowerShell Podcast on YouTube: https://youtu.be/cdtxSI8Tq3E

RunAs Radio
GitHub Copilot for SysAdmins with Jessica Deen

RunAs Radio

Play Episode Listen Later Apr 2, 2025 38:32


What can GitHub Copilot do for SysAdmins in 2025? Richard talks to Jessica Deen from GitHub about her experiences using Copilot for her work. Jessica talks about Copilot being the first stop for most tasks - describing the task to Copilot helps you think through the problem, and often the tool can generate code or information to get that task done fast. Today's GitHub Copilot can handle everything from explaining existing code to writing something new, debugging a problem, or even writing documentation!LinksGitHub CopilotChanging the AI Model for Copilot ChatVisual Studio Code InsidersAzure ExtensionsGitHub SparkLaunch DarklyRecorded March 13, 2025

The PowerShell Podcast
From Proper Football to Databases with Jess Pomfret

The PowerShell Podcast

Play Episode Listen Later Mar 31, 2025 51:22


In this episode of the PowerShell Podcast, we reconnect with Jess Pomfret, a PowerShell and SQL Server powerhouse, LinkedIn Learning instructor, and community advocate. From her early days in England to becoming a respected speaker and consultant, Jess shares her journey into tech, her passion for automation, and the importance of mentorship, curiosity, and community. Key topics in this episode include: Jess's transition from footballer to DBA – How a soccer scholarship led her to a tech career in the U.S. The power of PowerShell and DBA Tools – How Jess leverages PowerShell to automate SQL Server tasks and save time. Finding a community in SQL and PowerShell – Jess reflects on how welcoming both communities are and the impact they've had on her career. Career growth through speaking and mentoring – Encouraging others to speak, contribute, and grow through conferences and collaboration. Working with Data Masterminds – The benefits of working in a high-level consulting team and tips for managing multiple clients and context switching. LinkedIn Learning and teaching at scale – Behind the scenes of her professional training content and what it's like filming for LinkedIn Learning. Jess also shares her favorite DBA Tools command, productivity tips for conferences, and the story behind her podcast Finding Data Friends, which highlights voices in the data world.   Bio and links: Jess Pomfret is a Data Platform Engineer and a Dual Microsoft MVP. She started working with SQL Server in 2011, and enjoys the problem-solving aspects of automating processes with PowerShell. She also enjoys contributing to dbatools and dbachecks, two open source PowerShell modules that aid DBAs with automating the management of SQL Server instances. She has also contributed to the SqlServerDsc module, adding several new resources to use when configuring your SQL Servers. She grew up in the South West of England and outside of her DBA life enjoys Crossfit, cycling and watching proper football.  Connect with Jess on LinkedIn: https://www.linkedin.com/in/jpomfret and Bluesky: https://bsky.app/profile/jpomfret.co.uk Watch Finding Data Friends on YouTube: https://www.youtube.com/@findingdatafriends/videos Check out her LinkedIn Learning courses: https://www.linkedin.com/learning/instructors/jess-pomfret Explore DBA Tools at dbatools.io Join PowerShell Wednesdays at 2 PM EST on https://discord.gg/pdq The PowerShell Podcast: https://pdq.com/the-powershell-podcast The PowerShell Podcast on YouTube: https://youtu.be/L4zABO526bM

Microsoft Cloud IT Pro Podcast
Episode 398 – PowerShell and Intune with Harm Veenstra

Microsoft Cloud IT Pro Podcast

Play Episode Listen Later Mar 27, 2025 31:34 Transcription Available


Welcome to Episode 398 of the Microsoft Cloud IT Pro Podcast. In this episode Ben meets up with Harm Veenstra at the annual Microsoft MVP Summit. They chat a bit about Harm experience as an MVP and his path to becoming an MVP. Then the move into a few technologies near and dear to Harm, PowerShell and Microsoft Intune. They start off talking about some of the ways Harm uses PowerShell and some of his favorite scripts. They talk about how he uses PowerShell with Intune, in particular using it with remediation scripts. Harm Veenstra Harm started working at 18, from a ServiceDesk employee to a workspace and system engineer at a large insurance firm in the Netherlands. 1996, those were the days! After working there for almost 11 years, Harm had different system engineer jobs and learned much about Citrix, Cisco, VMWare, storage, and Microsoft. Currently, He's employed at NEXXT (https://www.nexxt.one) as a Consultant, mainly in Endpoint Management, but He does anything Microsoft

RunAs Radio
Writing Better PowerShell with Jeff Hicks

RunAs Radio

Play Episode Listen Later Mar 26, 2025 36:37


How do you write better PowerShell? Richard talks to Jeff Hicks about his latest book, Behind the PowerShell Pipeline, and his efforts to promote writing PowerShell scripts that are easy to understand, use, and maintain! Jeff talks about how making a script work is not enough anymore - you can use GitHub Copilot. The goal is to make the output as usable as possible, whether that is consistent output that is pipe-able or using color coding and column controls to make the results as actionable as possible. This is especially true as your team grows and more than one person works on scripts. Now, you'll want testing and source control, too!LinksPowerShell 7.5Behind the PowerShell PipelineGitHub CopilotPesterPowerShell SummitRecorded February 20, 2025

The PowerShell Podcast
How to Build an IT Career from the Ground Up with Kevin Apolinario (KevTech)

The PowerShell Podcast

Play Episode Listen Later Mar 24, 2025 58:54


In this episode of the PowerShell Podcast, we welcome Kevin of KevTech IT Support, a well-known mentor and educator in the IT community. With a background in fast food and law enforcement, Kevin shares his inspiring journey into IT and how he leveraged mentorship, home labs, and community engagement to build a thriving career. We dive into help desk fundamentals, breaking into IT, career development, and Kevin helps give you a map to career success.Key topics in this episode include: Kevin's journey from fast food and law enforcement to IT – How he transitioned careers and found success. The power of mentorship and community support – Why helping others accelerates your own growth. How to break into IT without a traditional background – The role of home labs, self-study, and networking. Building an IT career with practical skills – Why Active Directory, Office 365, and PowerShell are crucial. The importance of communication and customer service in IT – Why soft skills can be just as valuable as technical knowledge. How to stand out in job interviews and secure promotions – The value of documenting progress and advocating for yourself. Kevin also shares insights into KevTech Academy, his mentorship program, and why building a personal brand through blogging and LinkedIn can help IT professionals land jobs faster.   Bio and Links: Kevin Apolinario is an IT career coach and trainer dedicated to helping others break into tech. With experience in MSPs, Apple, education, hedge funds, and 12 years in the restaurant industry, he provides hands-on IT training through Jobskillshare and has trained students globally with Techskills Institute. He speaks at conferences and also runs a YouTube channel with nearly 100,000 subscribers, offering practical guidance on IT careers and technical skills. Follow Kevin on YouTube, Twitter, and Instagram (@KevTechITSupport) Check out KevTech Academy at https://kevtechitsupport.com Join PowerShell Wednesdays every Wednesday at 2 PM EST in the PDQ Discord http://discord.gg/pdq The PowerShell Podcast: https://pdq.com/the-powershell-podcast The PowerShell Podcast on YouTube: https://youtu.be/RrNyh6EuD_Q

The PowerShell Podcast
Exploring PowerShell for Physical Security and Automation with Cody Paternostro

The PowerShell Podcast

Play Episode Listen Later Mar 17, 2025 37:01


In this episode of the PowerShell Podcast, we welcome Cody Paternostro, a rising star in PowerShell automation, to discuss his unique journey into IT, the power of persistence in learning, and his work on RemotePro, a sophisticated PowerShell-based security camera management tool. Cody shares how he transitioned from food delivery to IT, leveraged PowerShell to streamline operations in physical security, and how asking the right questions helped accelerate his growth. Key topics in this episode include: Cody's unconventional entry into IT – How he discovered PowerShell in a networking and cybersecurity program. The impact of mentorship and community engagement – Learning from the PowerShell community and working with Joshua Hendricks. Building PowerShell tools for security – Using PowerShell to manage security cameras and automate surveillance tasks. From mega scripts to modules – Cody's journey in transitioning from large scripts to structured, reusable PowerShell modules. The importance of troubleshooting and continuous learning – How to push through roadblocks, improve problem-solving skills, and refine PowerShell development practices. Leveraging PowerShell GUI development – The role of runspaces, PSWriteHTML, and WPF in building efficient and user-friendly interfaces. Cody also shares insights on overcoming imposter syndrome, the power of community, and why documenting and sharing knowledge can accelerate career growth. Join the conversation:   Bio and Links: Cody Paternostro enjoys learning about Cybersecurity and PowerShell automation. · Experience: Digital Surveillance Solutions, Inc. · Education: Finger Lakes Community College · Location: Buffalo · 323 connections on LinkedIn. View Cody Paternostro's profile on LinkedIn, a professional community of 1 billion members. Connect with Cody on LinkedIn: https://www.linkedin.com/in/codypaternostro Explore RemotePro on GitHub https://remotepro.dev Join PowerShell Wednesdays every Wednesday at 2 PM EST in the PDQ Discord (discord.gg/pdq) The PowerShell Podcast Hub: https://pdq.com/the-powershell-podcast The Powershell Podcast on YouTube: https://youtu.be/bDjG6hSUIms

Microsoft Mechanics Podcast
Introducing Copilot in the Microsoft 365 admin centers

Microsoft Mechanics Podcast

Play Episode Listen Later Mar 17, 2025 8:31


Streamline daily admin tasks with AI-powered insights, natural language queries, and automation using Microsoft 365 Admin Copilot. Quickly recap key updates, monitor service health, and track important changes—all in one place. No more digging through multiple pages—just ask Copilot for the answers you need, grounded in real-time data from your tenant. From finding users and managing licenses to generating visual insights and automating tasks with PowerShell, use Copilot to simplify complex admin workflows and save valuable time. For Copilot in the admin center to light up, all you need is one active Microsoft 365 Copilot license for any user in your tenant and from the Microsoft 365 admin center, you can get started right away. Jeremy Chapman, Director of Microsoft 365, demonstrates how to leverage Copilot for proactive guidance, whether in the Microsoft 365 admin center or directly within Copilot Chat. ► QUICK LINKS: 00:00 - Copilot in Microsoft 365 00:42 - Use Copilot for change management 02:13 - Stay ahead of upcoming changes 03:31 - User and licensing queries 04:21 - Generate Visual Insights for Licensing and Usage 04:50 - Author PowerShell scripts for bulk operations 06:07 - Copilot Chat using Microsoft 365 Admin agent 07:37 - Copilot admin coming soon 07:51- Wrap up ► Link References For more information, check out https://aka.ms/CopilotinMAC Start using Microsoft 365 Copilot in the Microsoft 365 admin center at https://admin.microsoft.com ► Unfamiliar with Microsoft Mechanics? As Microsoft's official video series for IT, you can watch and share valuable content and demos of current and upcoming tech from the people who build it at Microsoft. • Subscribe to our YouTube: https://www.youtube.com/c/MicrosoftMechanicsSeries • Talk with other IT Pros, join us on the Microsoft Tech Community: https://techcommunity.microsoft.com/t5/microsoft-mechanics-blog/bg-p/MicrosoftMechanicsBlog • Watch or listen from anywhere, subscribe to our podcast: https://microsoftmechanics.libsyn.com/podcast ► Keep getting this insider knowledge, join us on social: • Follow us on Twitter: https://twitter.com/MSFTMechanics • Share knowledge on LinkedIn: https://www.linkedin.com/company/microsoft-mechanics/ • Enjoy us on Instagram: https://www.instagram.com/msftmechanics/ • Loosen up with us on TikTok: https://www.tiktok.com/@msftmechanics

The PowerShell Podcast
How PowerShell and the Right Mindset Can Transform Your IT Career with Steven Wight

The PowerShell Podcast

Play Episode Listen Later Mar 10, 2025 45:53


In this episode of the PowerShell Podcast, we sit down with Steven Wight, known online as PowerShell Young Team, to discuss his journey in PowerShell, automation, and the impact of the PowerShell community. Steven shares how PowerShell transformed his workflow, his approach to solving IT problems, and how he went from lurking in the background to actively contributing and engaging with the community. Key topics in this episode include: How PowerShell changed Steven's IT career – From his early days avoiding manual tasks to building automation solutions. The importance of documentation, blogging, and sharing scripts – How keeping track of work helped in job interviews and personal growth. Creating PowerShell tools with flexibility – Designing functions, using pipelines, and building user-friendly GUIs. Community engagement and learning from others – How PowerShell Discord, blogs, and social media have helped shape his expertise. PowerShell profiles, productivity, and efficiency – Leveraging PSReadLine, profiles, and workflow enhancements to get more done. Steven also shares advice for those just starting with PowerShell, emphasizing the value of small wins, continuous learning, and participating in the community to accelerate skill growth.   Bio and Links:   Steven Wight is an active PowerShell community member, blogger, and the mind behind PowerShell Young Team. With a diverse IT background spanning desktop & application support, system administration, development, OS migrations, and equipment refreshes, Steven thrives on problem-solving and automation. His passion for PowerShell, monitoring, and scripting fuels his mission to "automate himself to a quiet life." Follow Stephen on BlueSky at @poshyoungteam.bsky.social Read his blog at https://powershellyoungteam.github.io/ Connect with Steven on LinkedIn: https://www.linkedin.com/in/steven-wight-79aa0525/ Join PowerShell Wednesdays every Wednesday at 2 PM EST in the PDQ Discord (discord.gg/pdq) for live discussions and demos. The PowerShell Podcast on YouTube: https://youtu.be/klsOxHtG3KE The PowerShell Podcast: https://pdq.com/the-powershell-podcast

Exploit Brokers - Hacking News
HN58 - Havoc in the Cloud: The Shocking Click Fix Exploit Revealed

Exploit Brokers - Hacking News

Play Episode Listen Later Mar 6, 2025 24:22


Welcome to Exploit Brokers with your host Cipherceval! In this deep dive, we uncover a sophisticated cyber assault where hackers exploited Microsoft SharePoint to launch the Havoc C2 via a stealthy click fix attack. Learn how a single click can trigger malicious PowerShell commands, turning everyday corporate tools into gateways for cybercrime. In this episode, we explore: • How click fix attacks trick users into executing harmful commands • The role of social engineering in modern cyber warfare • The rising threat of ransomware targeting Middle Eastern banks and financial institutions • The importance of patching, penetration testing, and proactive cybersecurity measures Whether you're a cybersecurity expert or just curious about digital threats, this breakdown provides essential insights into how cybercriminals are reshaping the rules of digital warfare. Stay informed and protect yourself from these evolving dangers. Don't forget to like, subscribe, and hit the bell icon for more updates on cybersecurity trends! #CyberSecurity #HavocC2 #ClickFix #SharePointHack #Ransomware #DigitalWarfare #CyberAttack #Malware #SocialEngineering #ExploitBrokers

The PowerShell Podcast
PowerShell as a Defender's Secret Weapon with Michael Haag

The PowerShell Podcast

Play Episode Listen Later Mar 3, 2025 44:53


In this episode of the PowerShell Podcast, we sit down with Michael Haag, Principal Threat Researcher at Splunk, to dive into PowerShell security, threat detection, and automation. Michael shares his journey from IT support to becoming a security expert, the role of PowerShell in modern cybersecurity, and his work on PowerShell Hunter and Atomic Red Team. Key topics in this episode include: Michael's journey into security – From IT support to system administration and eventually security research. Incident response and PowerShell – How PowerShell is used to detect and mitigate threats. PowerShell Hunter – A powerful tool for hunting threats and automating security tasks. Atomic Red Team and Atomic Test Harnesses – How these tools help defenders simulate and detect attacks. The importance of automation in security – How PowerShell can help security teams manage large-scale environments efficiently. Advice for getting into security and automation – Why contributing to open-source and getting involved in the community is key. Michael also shares his thoughts on the evolving security landscape, how defenders can stay ahead of attackers, and practical steps for IT professionals looking to pivot into cybersecurity. Bio and Links: Michael Haag is Principal Threat Research Enginer at Splunk. Michael led the development of Atomic Red Team, an open-source testing platform that security teams can use to assess detection coverage. An avid researcher, he is passionate about understanding and evaluating the limits of defensive systems. His background includes security analysis, threat research, and incident handling. Follow Michael on Twitter (@M_Haggis) and GitHub (@MHaggis) Check out PowerShell Hunter on GitHub https://github.com/MHaggis/PowerShell-Hunter/ Learn more about Atomic Red Team https://www.atomicredteam.io/ Watch Atomics on a Friday, Michael's security research show on YouTube https://www.youtube.com/@atomicsonafriday Join PowerShell Wednesdays every Wednesday at 2 PM EST in the PDQ Discord (discord.gg/pdq) The PowerShell Podcast: https://pdq.com/the-powershell-podcast The PowerShell Podcast on YouTube: https://youtu.be/F2TbwUS-eRI

ITSPmagazine | Technology. Cybersecurity. Society
Hands-On Hacking: Lessons Learned from a Rubbery Ducky USB Attack Simulation | A Zero Trust World Conversation with Kieran Human | On Location Coverage with Sean Martin and Marco Ciappelli

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Feb 26, 2025 7:45


At ThreatLocker's Zero Trust World 2025 in Orlando, Kieran Human, Special Projects Engineer at ThreatLocker, showcased the practical dangers of everyday cybersecurity threats through engaging, hands-on labs. Attendees, ranging from CISOs to IT technicians, were offered the chance to experience real-world hacking scenarios using devices like the infamous “rubber ducky.”The Rubber Ducky ExperienceThe rubber ducky, which resembles a standard USB drive, acts as a keyboard when plugged into a computer, executing automated scripts. Human demonstrated how this device could disable Windows Defender, exfiltrate data, and execute scripts—highlighting how accessible hacking tools have become. Attendees left with both new knowledge and their own rubber ducky, reinforcing the event's educational impact.From Learning to DefenseThe lab sessions underscored the importance of understanding threats to effectively defend against them. Human emphasized that cybersecurity isn't just for seasoned professionals; even attendees with minimal experience learned how to execute data exfiltration and bypass security protocols within an hour. This revelation stressed the necessity of robust security measures, even for general IT professionals who may not specialize in cybersecurity.Mitigating Threats with ThreatLockerThreatLocker's solutions, including features like ring-fencing PowerShell and applying layered protections, were showcased as effective countermeasures. Human explained how ThreatLocker's tools could prevent malicious scripts from accessing the internet or sensitive folders, offering a tangible defense against the types of attacks demonstrated in the labs.Looking AheadLooking toward next year, Human hinted at more advanced demonstrations, potentially including ransomware scenarios. This forward-thinking approach aligns with ThreatLocker's commitment to preparing IT and security professionals for the evolving challenges they face.Why This MattersThe episode captures how ThreatLocker is not just educating but empowering IT and security professionals. By providing a controlled environment to experience cyberattacks firsthand, the event bridged the gap between theory and practice. Listen to the full episode for insights into how these experiences translate into actionable strategies for building stronger, more resilient cybersecurity defenses.Guest: Kieran Human, Special Projects Engineer at ThreatLocker | On LinkedIn: https://www.linkedin.com/in/kieran-human-5495ab170/Hosts:Sean Martin, Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining CyberSecurity Podcast [@RedefiningCyber] | On ITSPmagazine:  https://www.itspmagazine.com/sean-martinMarco Ciappelli, Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining Society Podcast & Audio Signals Podcast | On ITSPmagazine: https://www.itspmagazine.com/itspmagazine-podcast-radio-hosts/marco-ciappelli____________________________This Episode's SponsorsThreatLocker: https://itspm.ag/threatlocker-r974____________________________ResourcesLearn more and catch more stories from ZTW 2025 coverage: https://www.itspmagazine.com/zero-trust-world-2025-cybersecurity-and-zero-trust-event-coverage-orlando-floridaRegister for Zero Trust World 2025: https://itspm.ag/threat5mu1____________________________Catch all of our event coverage: https://www.itspmagazine.com/technology-and-cybersecurity-conference-coverageTo see and hear more Redefining CyberSecurity content on ITSPmagazine, visit: https://www.itspmagazine.com/redefining-cybersecurity-podcastTo see and hear more Redefining Society stories on ITSPmagazine, visit:https://www.itspmagazine.com/redefining-society-podcastWant to tell your Brand Story Briefing as part of our event coverage? Learn More

The PowerShell Podcast
MS Graph and Stepping into Public Speaking with Morten Kristensen

The PowerShell Podcast

Play Episode Listen Later Feb 24, 2025 33:49


In this episode of the PowerShell Podcast, we sit down with Morten Kristensen, an automation specialist and PowerShell enthusiast, to discuss his journey with PowerShell, his experience working with the Microsoft Graph API, and his recent leap into public speaking. Morten shares insights from his first-ever technical talk, the challenges of working with Graph API, and how he's navigating his professional growth. Key topics in this episode include: Getting started with MS Graph API – Overcoming common challenges, including authentication, filtering, and throttling. Batching API requests – How to optimize Graph API calls for efficiency and performance. Taking the leap into public speaking – Morten shares his experience preparing for and delivering his first-ever talk at PowerShell Wednesdays. The power of community engagement – How being part of the PowerShell community has accelerated learning and career growth. Starting a PowerShell blog – Why Morten launched his blog and how he plans to share more insights and technical knowledge. Morten also shares his career perspective, how he got into automation, and why he believes that solving problems and sharing knowledge is key to professional growth.   Bio: An automation specialist with a passion for scripting and homelabbing, Morten Mynster specializes in PowerShell, Python, and Terraform to streamline processes, manage systems, and optimize cloud infrastructure. With a strong focus on automation tools and best practices, Morten shares insights and experiences through blogging, helping others navigate the world of scripting and infrastructure as code.   Links:  Read Morten's blog at mynster9361.github.io Connect with Morten on LinkedIn and Discord Check out PowerShell Wednesdays every Wednesday at 2 PM EST in the PDQ Discord (discord.gg/pdq) for live discussions and demos. The PowerShell Podcast: https://pdq.com/the-powershell-podcast The PowerShell Podcast on YouTube: https://youtu.be/74fjqGtYW0Q  

The PowerShell Podcast
Building a Game in PowerShell from the Ground Up with Greg Martin

The PowerShell Podcast

Play Episode Listen Later Feb 17, 2025 38:49


In this episode of the PowerShell Podcast, we welcome Greg Martin, a longtime developer and PowerShell enthusiast, who has taken PowerShell beyond system administration and into the realm of game development. Greg shares his journey of building Eldoria, a terminal adventure game written entirely in PowerShell, and how his experience across multiple programming languages influenced his approach. Key topics in this episode include: Building a game in PowerShell – How Greg used PowerShell to create a rich text-based adventure. The power of terminal-based gaming – A brief look into ANSI escape sequences, JSON asset management, and the REPL loop. Greg's programming journey – From C and C++ to PowerShell, game development, and enterprise automation. Lessons in curiosity and career growth – How following your interests can lead to unexpected and rewarding opportunities. Greg also discusses the challenges of structuring a large-scale PowerShell project, how PowerShell's object-oriented features made development easier, and how anyone can start exploring creative projects with PowerShell.Join the conversation:   Bio and links: Gregory Martin is a Senior Linux Engineer, formerly an industrial network designer, IT manager, sysadmin, and may have given a lecture or two at tech conferences. He's an avid programmer with over 20 years of experience, ranging from Windows/Linux Desktop, Web, Android/iOS, Industrial IoT, Linux CLI, and Automation Orchestration. In his spare time, he writes computer games and dabbles with AI technologies. He writes at his blog (themartinmethod.com). Check out Eldoria on Greg's GitHub and explore the game in your own terminal. Read Greg's blog at TheMartinMethod.com for updates on Eldoria and other projects. Join PowerShell Wednesdays every Wednesday at 2 PM EST in the PDQ Discord community (discord.gg/pdq) for live discussions. https://github.com/gregoryfmartin/Eldoria https://github.com/gregoryfmartin/Burnt-Latte https://www.linkedin.com/in/andrewplatech/ The PowerShell Podcast: https://pdq.com/the-powershell-podcast The PowerShell Podcast on YouTube: https://youtu.be/0kBrtPsD2EE  

The CyberWire
Bot or not? The fake CAPTCHA trick spreading Lumma malware. [Research Saturday}

The CyberWire

Play Episode Listen Later Feb 15, 2025 35:08


Nati Tal, Head of Guardio Labs, discusses their work on "“DeceptionAds” — Fake Captcha Driving Infostealer Infections and a Glimpse to the Dark Side of Internet Advertising." Guardio has uncovered a large-scale malvertising campaign dubbed “DeceptionAds,” which tricks users into running a malicious PowerShell command under the guise of proving they're human. This fake CAPTCHA scheme delivers Lumma info-stealer malware while bypassing security measures like Google's Safe Browsing. Even after disclosure and takedown efforts, the campaign resurfaced—raising concerns about the effectiveness of existing defenses against ad-driven cyber threats. The research can be found here: “DeceptionAds” — Fake Captcha Driving Infostealer Infections and a Glimpse to the Dark Side of Internet Advertising Learn more about your ad choices. Visit megaphone.fm/adchoices

Research Saturday
Bot or not? The fake CAPTCHA trick spreading Lumma malware.

Research Saturday

Play Episode Listen Later Feb 15, 2025 35:08


Nati Tal, Head of Guardio Labs, discussing their work on "“DeceptionAds” — Fake Captcha Driving Infostealer Infections and a Glimpse to the Dark Side of Internet Advertising." Guardio has uncovered a large-scale malvertising campaign dubbed “DeceptionAds,” which tricks users into running a malicious PowerShell command under the guise of proving they're human. This fake CAPTCHA scheme delivers Lumma info-stealer malware while bypassing security measures like Google's Safe Browsing. Even after disclosure and takedown efforts, the campaign resurfaced—raising concerns about the effectiveness of existing defenses against ad-driven cyber threats. The research can be found here: “DeceptionAds” — Fake Captcha Driving Infostealer Infections and a Glimpse to the Dark Side of Internet Advertising Learn more about your ad choices. Visit megaphone.fm/adchoices

SANS Internet Stormcenter Daily Network/Cyber Security and Information Security Stormcast
SANS Stormcast Feb 13th 2025: Smart City Threats; Advanced Social Engineering Attacks; Wazuh Vulnerability; PAM Vulnerability; Ivanti Patches

SANS Internet Stormcenter Daily Network/Cyber Security and Information Security Stormcast

Play Episode Listen Later Feb 13, 2025 5:58


An Ontology for Threats: Cybercrime and Digital Forensic Investigation on Smart City Infrastructure Smart cities is a big topic for many local governments. With building these complex systems, attacks will follow. https://isc.sans.edu/diary/An%20ontology%20for%20threats%2C%20cybercrime%20and%20digital%20forensic%20investigation%20on%20Smart%20City%20Infrastructure/31676 North Korean state actor tricking admins into executing PowerShell North Korean state actors are spending quite a bit of effort setting up relationships with South Korean system administrators, culminating in them getting tricked into executing malicious PowerShell scripts. https://x.com/MsftSecIntel/status/1889407814604296490 Wazuh Vulnerability A deserialization vulnerability in Wazuh may lead to an unauthenticated remote code execution vulnerability https://github.com/wazuh/wazuh/security/advisories/GHSA-hcrc-79hj-m3qh PAM PKCS11 Vulnerablity Several vulnerabilities in the Linux PAM module processing smart card authentication can be used to bypass authentication https://github.com/OpenSC/pam_pkcs11/releases/tag/pam_pkcs11-0.6.13 Ivanti Patches Ivanti released its monhtly update, fixing a number of critical vulnerabilities in Connect Secure and other prodcuts https://forums.ivanti.com/s/article/February-Security-Advisory-Ivanti-Connect-Secure-ICS-Ivanti-Policy-Secure-IPS-and-Ivanti-Secure-Access-Client-ISAC-Multiple-CVEs?language=en_US

The PowerShell Podcast
Building Secure PowerShell Solutions with Jake Hildreth

The PowerShell Podcast

Play Episode Listen Later Feb 10, 2025 36:25


In this episode of the PowerShell Podcast, we welcome back security-focused PowerShell expert Jake Hildreth for an insightful conversation about PowerShell, security tools, and his continued journey in the PowerShell community. Jake shares updates on Locksmith v2, his work with PowerPUG, and his experience learning new PowerShell techniques to refine and improve his tools. Bio: I'm a husband, a dad, and a recovering sysadmin. I've worked in technology since the year 2000, when I got my first tech job as Tier 1 support for cable modem companies. After that, I transitioned into systems & network administration, always with a security focus. In the last three years, I pivoted into security, focusing on Active Directory. When I'm not working, I enjoy cooking, drinking whiskey, lifting weights, traveling, reading... and writing code. Coding is like creating and solving little puzzles for yourself! So soothing. Key topics in this episode include: The evolution of Locksmith and the road to v2, including improvements in automation, PowerShell best practices, and making security more accessible. PowerPug and the protected users group, a tool that helps sysadmins secure their environments by eliminating outdated authentication vulnerabilities. Learning Crescendo, explore how Jake wrapped certutil.exe. Improving PowerShell workflows, including scripting automation, optimizing profiles, and using community resources for best practices. The importance of documentation, automation, and making security easier for sysadmins. Jake also shares insights from his time working with the PowerShell community, including PowerShell Wednesdays, learning from peers, and the power of building in public. Join the conversation: Follow Jake at JakeHildreth.com for links to all his projects and socials. Catch PowerShell Wednesdays every Wednesday at 2 PM EST in the PDQ Discord community (discord.gg/pdq) for live discussions and demos. Links: The PowerShell Podcast: https://pdq.com/the-powershell-podcast The PowerShell Podcast on YouTube: https://youtu.be/A6ycrxQRIns  

The CyberWire
Cleo's trojan horse. [Research Saturday]

The CyberWire

Play Episode Listen Later Feb 8, 2025 21:31


Mark Manglicmot, SVP of Security Services from Arctic Wolf, is sharing their research on "Cleopatra's Shadow: A Mass Exploitation Campaign Deploying a Java Backdoor Through Zero-Day Exploitation of Cleo MFT Software." Arctic Wolf Labs discovered an ongoing exploitation campaign targeting Cleo Managed File Transfer (MFT) products, beginning on December 7, 2024. Threat actors used a malicious PowerShell stager to deploy a Java-based backdoor, dubbed Cleopatra, which features in-memory file storage and cross-platform compatibility across Windows and Linux. Despite Cleo's previous patch for CVE-2024-50623, attackers appear to have leveraged an alternative access method, exploiting the software's autorun feature to execute payloads and establish persistent access. The research can be found here: Cleopatra's Shadow: A Mass Exploitation Campaign Deploying a Java Backdoor Through Zero-Day Exploitation of Cleo MFT Software Learn more about your ad choices. Visit megaphone.fm/adchoices

Research Saturday
Cleo's trojan horse.

Research Saturday

Play Episode Listen Later Feb 8, 2025 21:31


Mark Manglicmot, SVP of Security Services from Arctic Wolf, is sharing their research on "Cleopatra's Shadow: A Mass Exploitation Campaign Deploying a Java Backdoor Through Zero-Day Exploitation of Cleo MFT Software." Arctic Wolf Labs discovered an ongoing exploitation campaign targeting Cleo Managed File Transfer (MFT) products, beginning on December 7, 2024. Threat actors used a malicious PowerShell stager to deploy a Java-based backdoor, dubbed Cleopatra, which features in-memory file storage and cross-platform compatibility across Windows and Linux. Despite Cleo's previous patch for CVE-2024-50623, attackers appear to have leveraged an alternative access method, exploiting the software's autorun feature to execute payloads and establish persistent access. The research can be found here: Cleopatra's Shadow: A Mass Exploitation Campaign Deploying a Java Backdoor Through Zero-Day Exploitation of Cleo MFT Software Learn more about your ad choices. Visit megaphone.fm/adchoices

The PowerShell Podcast
Exploring the Power of IoT and PowerShell with Mark Go

The PowerShell Podcast

Play Episode Listen Later Feb 3, 2025 54:29


In this episode of the PowerShell Podcast, we sit down with Mark Go, a PowerShell enthusiast and innovator, to discuss his exciting journey from the Navy to becoming a tech-savvy system administrator. Mark shares his experiences using PowerShell to make his work life better. Key topics in this episode include: Mark's journey from a Navy corpsman to a PowerShell expert, including his first breakthrough script for managing IoT medical devices. Using PowerShell to explore and tinker with IoT devices, Raspberry Pi projects, and microcontrollers. The power of community connections, networking, and starting a PowerShell user group. Lessons learned from Lean Six Sigma and how continuous process improvement ties into PowerShell. Favorite PowerShell modules, including PSReadLine, PSDiscoveryProtocol, and KBUpdate, and how they make daily tasks more efficient. Bio and Links: Mark Go is a PowerShell enthusiast, IT professional, and former Navy corpsman with a passion for automation and innovation.  Discover more tools and resources at PowerShell Wednesdays, hosted weekly at 2 PM EST in the PDQ Discord community: discord.gg/pdq https://www.linkedin.com/in/mark-go-0439791b7/ https://www.linkedin.com/in/andrewplatech/ https://github.com/lahell/PSDiscoveryProtocol  The PowerShell Podcast: https://pdq.com/the-powershell-podcast The PowerShell Podcast on YouTube: https://youtu.be/85L3OApF3a8

The Azure Podcast
Episode 512 - WAF and WARA on the Azure Podcast

The Azure Podcast

Play Episode Listen Later Feb 3, 2025


Senthuran Sivananthan comes on the show to talk about the Well-Architected Framework (WAF) and Well Architected Resiliency Review (WARA).   Media file: https://azpodcast.blob.core.windows.net/episodes/Episode512.mp3 YouTube: https://youtu.be/xTxG7X9RoWQ   Resources: Azure Pricing Calculator Azure Architecture Review Web Application Firewall Other Updates: Retirement of Azure Automation's Powershell runbooks using AzureRM modules TLS1.0/1.1 retirement for Azure Automation Customer Managed Unplanned Failover for ADLS and Storage+SFTP

SANS Internet Stormcenter Daily Network/Cyber Security and Information Security Stormcast
SANS ISC Stormcast, Jan 30th 2025: Python vs. Powershell; Fortinet Exploits and Patch Policy; Voyager PHP Framework Vuln; Zyxel Targeted; VMWare AVI Patch

SANS Internet Stormcenter Daily Network/Cyber Security and Information Security Stormcast

Play Episode Listen Later Jan 30, 2025 5:33


From PowerShell to a Python Obfuscation Race! This information stealer not only emulates a PDF document convincingly, but also includes its own Python environment for Windows https://isc.sans.edu/diary/From%20PowerShell%20to%20a%20Python%20Obfuscation%20Race!/31634 Alleged Active Exploit Sale of CVE-2024-55591 on Fortinet Devices An exploit for this week's Fortinet vulnerability is for sale on russian forums. Fortinet also requires patching of devices without cloud license within seven days of patch release https://x.com/MonThreat/status/1884577840185643345 https://community.fortinet.com/t5/Support-Forum/Firmware-upgrade-policy/td-p/373376 The Tainted Voyage: Uncovering Voyager's Vulnerabilities Sonarcube identified vulnerabilities in the popular PHP package Voyager. One of them allows arbitrary file uploads. https://www.sonarsource.com/blog/the-tainted-voyage-uncovering-voyagers-vulnerabilities/ Hackers exploit critical unpatched flaw in Zyxel CPE devices A currently unpatches vulnerablity in Zyxel devices is actively exploited. https://www.bleepingcomputer.com/news/security/hackers-exploit-critical-unpatched-flaw-in-zyxel-cpe-devices/ VMSA-2025-0002: VMware Avi Load Balancer addresses an unauthenticated blind SQL Injection vulnerability (CVE-2025-22217) VMWare released a patch for the AVI Load Balancer addressing an unauthenticated blink SQL injection vulnerability. https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/25346

The PowerShell Podcast
Streamlining PowerShell Package Management with Fred Weinmann

The PowerShell Podcast

Play Episode Listen Later Jan 27, 2025 54:16


In this episode of the #PowerShell Podcast, we continue our deep dive with Fred Weinmann, a Microsoftie and PowerShell legend, as he shares more insights and tools that redefine productivity for PowerShell enthusiasts. Picking up where we left off in the last episode, Fred takes us through his journey of mastering PowerShell, collaborating with the community, and optimizing workflows with powerful custom modules. Key topics in this episode include: Fred's Learning Journey: The value of collaboration in projects like dbatools and the evolution of his development practices. PowerShell Package Management Simplified: Exploring Fred's toolkit for unifying and streamlining PowerShellGet and PSResourceGet, including tools for offline environments and multi-machine deployments. The Importance of Workflow Optimization: Fred shares his philosophy on making the console your home and configuring it to eliminate unnecessary pain points. Fred's Advanced Tools: Fred takes us step-by-step through his projects Fred also emphasizes the importance of adopting best practices, learning from community contributions, and continuously optimizing your tools to make PowerShell work for you. Join PowerShell Wednesdays at 2 PM EST for community discussions and learning. Bio: Fred Weinmann is a seasoned Cloud Solution Architect at Microsoft and a renowned PowerShell expert with years of experience designing and implementing scalable solutions. A prolific creator, Fred has developed key tools like PSFramework, PSModuleDevelopment, PSUtil, and PSFramework.Nuget, which empowers developers and IT professionals to optimize their workflows. Passionate about technology and problem-solving, Fred's innovative approach to PowerShell module development and his commitment to community-driven open-source projects have made him a respected figure in the PowerShell community. Resource links: https://github.com/FriedrichWeinmann https://discord.gg/pdq https://aka.ms/psdiscord PowerShell Podcast Home page: https://www.pdq.com/resources/the-powershell-podcast/ The PowerShell Podcast: https://pdq.com/the-powershell-podcast  The PowerShell Podcast on YouTube: https://youtu.be/IcRVwrNNY2g    

Data Center Therapy
#095 - Into the Microsoft Jungle

Data Center Therapy

Play Episode Listen Later Jan 24, 2025 43:07


Are the dense jungles of Windows Server leaving you lost? Are Active Directory tangles, Entra ID integrations, or legacy issues keeping your IT nights sleepless? Well, grab your machete (or PowerShell) and join us on an expedition into the depths of Microsoft ecosystems in this week's episode of Data Center Therapy!In this thrilling adventure, your trusted guides, Matt “Server Sherpa” Yette and Matt “Patch Paladin” Cozzolino, are joined once again by IVOXY's own Microsoft guru, Dade “Forest Ranger” Wilson. Together, they brave the wilds of Windows Server and Active Directory to uncover the secrets, pitfalls, and solutions waiting within.What treasures (and traps) await you in this episode?Windows Server Assessment: Dade spills the beans on what his assessment covers, from identifying lurking performance issues to spotting security vulnerabilities in forgotten corners of your environment.Active Directory & Entra ID: How do these two pillars of Microsoft infrastructure intersect, and why do they often make us break a sweat?Best Practices & Pro Tips: Schema upgrades, time-sync nightmares, and why DNS is always the culprit—Dade and the Matts share their survival tips.Upcoming Workshop Alert: Don't miss out on IVOXY's upcoming Active Directory/Entra ID workshop and hands-on training class, led by Dade, designed to demystify these crucial Microsoft tools and set your team up for success.As always, if you enjoy the show, please be sure to like, share with three colleagues and subscribe wherever you get your quality podcasts.From the DCT crew – Stay cool, stay protected, be informed and see you at the next event and episode, compadres

The PowerShell Podcast
The Art and Science of PowerShell Module Development with Fred Weinmann

The PowerShell Podcast

Play Episode Listen Later Jan 20, 2025 46:36


In this episode of the PowerShell Podcast, we sit down with Fred Weinmann, a prolific PowerShell module creator, to explore his remarkable contributions, including PSFramework, PSModuleDevelopment, PSUtil, and PSFramework.Nuget. Fred shares insights on developing impactful solutions, such as the KRBTGT module and the evolution of module development in large-scale environments.  We dive into Fred's journey at Microsoft as a Cloud Solution Architect, discussing how he leverages his passion for technology and PowerShell to create scalable and innovative tools. Key topics include:  Building internal PowerShell repositories and best practices for managing trust and dependencies. Overcoming challenges with module distribution in offline environments.  Fred's unique hierarchical approach to structuring modules for business and technical processes.  Exciting projects like automating help documentation for commands and enhancing AI's role in PowerShell development.  Fred also reflects on his decision to pursue a hands-on technical career over management, emphasizing the satisfaction and impact he derives from solving complex technical challenges.  Join us for PowerShell Wednesdays at 2 PM EST, on the PDQ Discord https://discord.gg/pdq  Join us next week for part two with Fred Weinmann.  Bio and Links: Fred Weinmann is a seasoned Cloud Solution Architect at Microsoft and a renowned PowerShell expert with years of experience designing and implementing scalable solutions. A prolific creator, Fred has developed key tools like PSFramework, PSModuleDevelopment, PSUtil, and PSFramework.Nuget, which empower developers and IT professionals to optimize their workflows. Passionate about technology and problem-solving, Fred's innovative approach to PowerShell module development and his commitment to community-driven open-source projects have made him a respected figure in the PowerShell community. https://github.com/PowershellFrameworkCollective/PSFramework.NuGet https://github.com/ActiveDirectoryManagementFramework/ADMF   PowerShell Podcast Home page: https://www.pdq.com/resources/the-powershell-podcast/  

Programming By Stealth
PBS Tidbit 11B — A PowerShell Teaser

Programming By Stealth

Play Episode Listen Later Jan 19, 2025 77:09


As promised, we're back with part 2 of the Powershell Teaser. We pick up where we left off, starting with learning about parameter definitions and the advantages such a structured language affords us, including automatically generated help files and error checking. Bart updated the shownotes to include valuable resource links to take your PowerShell to a higher level. We walk through our plan for 2025, where Bart is going to teach us about GitHub Pages (which power the Programming By Stealth shownotes) and then how to change the style you see with Bootstrap to make it your own. After that we expect to get back to PowerShell but that's a ways down the road so things could change.

The PowerShell Podcast
PowerShell Changed My Life... with Adam Bacon.

The PowerShell Podcast

Play Episode Listen Later Jan 13, 2025 41:02


In this episode of the PowerShell Podcast, Andrew catches up with returning guest Adam Bacon. Adam shares an update on his career and shares how PowerShell has played a huge role in helping him accomplish his dream.  Guest Bio and links:  Adam Bacon has over 24 years of IT experience, 13 of which with PowerShell. He can be found writing on one of his blogs, adding code to one of his 80+ projects on GitHub, speaking about PowerShell, and more.   https://adam-bacon.netlify.app/ PowerShell Wednesdays: https://discord.gg/pdq The PowerShell Podcast: https://pdq.com/the-powershell-podcast The PowerShell Podcast on YouTube: https://youtu.be/HgDCzoNcir4