<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <channel>
    <title>Powershell on Solvere Labs</title>
    <link>https://solvere.app/tags/powershell/</link>
    <description>Recent content in Powershell on Solvere Labs</description>
    <language>en-us</language>
    <managingEditor>contact@solvere.app (Solvere Labs)</managingEditor>
    <webMaster>contact@solvere.app (Solvere Labs)</webMaster>
    <copyright>© 2026 Solvere Labs</copyright>
    <lastBuildDate>Fri, 19 Jun 2026 00:00:00 +0000</lastBuildDate>
    <image>
      <url>https://solvere.app/icon-512.png</url>
      <title>Solvere Labs</title>
      <link>https://solvere.app/tags/powershell/</link>
    </image><atom:link href="https://solvere.app/tags/powershell/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Windows Download Methods</title>
      <link>https://solvere.app/tutorials/guides/windows-download-methods/</link>
      <pubDate>Fri, 19 Jun 2026 00:00:00 +0000</pubDate>
      <dc:creator>Solvere Labs</dc:creator>
      <category>file-transfer</category><category>windows</category><category>powershell</category><category>post-exploitation</category>
      <guid>https://solvere.app/tutorials/guides/windows-download-methods/</guid>
      <description>The Windows-native ways to pull a file when you have a shell on a Windows host: certutil, bitsadmin, PowerShell Invoke-WebRequest, WebClient, and the in-memory IEX cradle, with an honest look at how defenders see each one.</description>
    </item>
    
    <item>
      <title>Investigation with Splunk Walkthrough</title>
      <link>https://solvere.app/ctfs/thm/investigation-with-splunk/</link>
      <pubDate>Fri, 19 Jun 2026 00:00:00 +0000</pubDate>
      <dc:creator>naval0505</dc:creator>
      <category>thm</category><category>forensics</category><category>powershell</category><category>persistence</category><category>php</category>
      <guid>https://solvere.app/ctfs/thm/investigation-with-splunk/</guid>
      <description>Today we are investigating another TryHackMe Defensive Security challenge where we are provided with Windows event logs that have already been ingested into Splunk.</description>
    </item>
    
    <item>
      <title>PowerView</title>
      <link>https://solvere.app/tutorials/guides/powerview/</link>
      <pubDate>Thu, 02 Apr 2026 00:00:00 +0000</pubDate>
      <dc:creator>Solvere Labs</dc:creator>
      <category>windows</category><category>active-directory</category><category>enumeration</category><category>powershell</category><category>recon</category><category>ldap</category>
      <guid>https://solvere.app/tutorials/guides/powerview/</guid>
      <description>A practical PowerView guide for authorized AD labs: load the module, enumerate users, groups, ACLs, and trusts from a domain-joined host, read the output, and understand the defenses that watch it.</description>
    </item>
    
    <item>
      <title>PowerUp</title>
      <link>https://solvere.app/tutorials/guides/powerup/</link>
      <pubDate>Sat, 28 Mar 2026 00:00:00 +0000</pubDate>
      <dc:creator>Solvere Labs</dc:creator>
      <category>windows</category><category>privilege-escalation</category><category>enumeration</category><category>powershell</category><category>post-exploitation</category><category>unquoted-service-path</category>
      <guid>https://solvere.app/tutorials/guides/powerup/</guid>
      <description>A practical PowerUp guide: run the PowerSploit Windows privesc auditor, read its check output honestly, focus on the high-signal service and path findings, and keep it lab-safe.</description>
    </item>
    
  </channel>
</rss>
