Digital Forensic Survival Podcast
Digital Forensic Survival Podcast
Digital Forensic Survival Podcast
DFSP # 427 - MOF Balls
31 minutes Posted Apr 23, 2024 at 5:02 am.
0:00
31:47
Download MP3
Show notes

Windows management instrumentation, also known as WMI, is an App on Windows that allows a user to query all sorts of things about a system. Being native to Windows, it is an attractive target for a attackers to leverage. This week I'll break down the artifact from a DFIR point of a few and talk about how to detect its misuse.