Cybercriminals love this old window tool, but a little known cli utility is their new secret weapon




  • Netsh.exe is the most abused Windows tool, and still hides in view
  • Powershell appears in 73% of the final points, not only in the hands of administration
  • WMIC’s surprising return shows the attackers favors the tools that nobody is looking at

A new analysis of 700,000 security incidents has revealed how extensively cybercriminals exploit Microsoft’s trust tools to violate the systems.

While the trend of attackers who use native profits, known as tactics of living off the Land (Lotl), is not new, the latest data on the Bitdefender Gravityzone platform suggest that it is even more generalized than it was previously believed.

Leave a Comment

Your email address will not be published. Required fields are marked *