Agent Skills: detecting-suspicious-powershell-execution

Detect suspicious PowerShell execution patterns including encoded commands, download cradles, AMSI bypass attempts, and constrained language mode evasion.

UncategorizedID: plurigrid/asi/detecting-suspicious-powershell-execution

Install this agent skill to your local

pnpm dlx add-skill https://github.com/plurigrid/asi/detecting-suspicious-powershell-execution

Skill Files

Browse the full folder contents for detecting-suspicious-powershell-execution.

Download Skill

Loading file tree…

Select a file to preview its contents.