NSA は、Windows マルウェアとの戦いにおけるばかげた過ちに対して警告します

Task automation platform PowerShell, which is often abused by threat actors distributing malware (新しいタブで開きます), can also be used for attack detection and prevention. This is the advice the US National Security Agency (NSA) recently gave to system administrators everywhere. 

Alongside cybersecurity centers in the UK and New Zealand, the NSA published a security advisory in which it argues that blocking PowerShell, a common security practice, actually lowers organizations’ defensive capabilities against ransomware (新しいタブで開きます) and other forms of cyberattacks.

ソース