Attacker Uses Suspected AI-Generated PowerShell Script to Map Active Directory
AI 생성된 PowerShell 스크립트를 이용한 Active Directory 침해 사건이 보고되었다.
사이버 보안 연구자들이 미지의 위협 행위자가 Active Directory(AD) 열거를 위해 사용한 의심되는 AI 생성 PowerShell 스크립트를 발견했다. 이 스크립트는 도메인 컨트롤러(DC)를 탐색하고 사용자, 컴퓨터 및 도메인을 매핑한 후, 디렉토리를 생성하고 여러 파일을 내보낸다. 결과적으로 AD_Report.html을 생성하여 성공을 측정하는 방식으로 작동한다.
An intrusion using a suspected AI-generated PowerShell script for Active Directory enumeration has been reported.
Cybersecurity researchers have flagged an intrusion where an unknown threat actor leveraged a suspected AI-generated PowerShell script for Active Directory (AD) enumeration. The script searched for the Domain Controller (DC) and mapped users, computers, and domains before creating a directory and exporting several files. Finally, it generated AD_Report.html to measure the success of the operation.