Revoke-Obfuscation: PowerShell Obfuscation Detection Framework

Revoke-Obfuscation v1.0 Introduction Revoke-Obfuscation is a PowerShell v3.0+ compatible PowerShell obfuscation detection framework. Authors Daniel Bohannon (@danielhbohannon) Lee Holmes (@Lee_Homes) Background In the Fall of 2016 and Spring of 2017,...