Skip to main content

Powershell Remoting

Powershell Remoting enables you to remotely connect to Windows hosts to execute Powershell commands.

Note: This is a beta pack, which lets you implement and test pre-release software. Since the pack is beta, it might contain bugs. Updates to the pack during the beta phase might include non-backward compatible features. We appreciate your feedback on the quality and usability of the pack to help us identify issues, fix them, and continually improve.

Powershell Remoting is a built-in feature in Windows that enables connecting remotely to hosts in order to execute scripts and Powershell commands. By using Powershell Remoting, the SOC analyst or incident responder is able to connect to a Windows host and perform tasks such as gathering data, remediating the host, moving files to and from the host and XSOAR, and much more.

What does this pack do?

Allows you to interact with Windows hosts for actions such as acquiring forensic data.

The pack includes the Powershell Remoting integration.

Need to know

This pack is recommended to use in conjunction with the Windows Forensics Pack which contains playbooks and other content to use with this integration.

For more information, visit the Cortex XSOAR Developer Docs.

PUBLISHER

Cortex XSOAR

INFO

CertificationRead more
Supported ByCortex XSOAR
CreatedJune 22, 2021
Last ReleaseDecember 21, 2021

DISCLAIMER
Content packs are licensed by the Publisher identified above and subject to the Publisher’s own licensing terms. Palo Alto Networks is not liable for and does not warrant or support any content pack produced by a third-party Publisher, whether or not such packs are designated as “Palo Alto Networks-certified” or otherwise. For more information, see the Marketplace documentation.