refactor(payload): rename apollo to ares and update documentation

This commit renames the Apollo payload type to Ares, moving all associated files and updating documentation accordingly. The change includes:
- Renaming directories from `apollo` to `ares`
- Updating documentation image references
- Maintaining the same code functionality while changing the payload name
- Adding new Ares-specific documentation files
- Removing old Apollo documentation files

The rename is done to reflect the new payload name while preserving all existing functionality.
This commit is contained in:
Aryma
2026-04-14 14:02:44 +07:00
parent e14b1f21eb
commit 03d283cf49
753 changed files with 0 additions and 0 deletions

View File

@@ -0,0 +1,31 @@
+++
title = "powershell"
chapter = false
weight = 103
hidden = false
+++
## Summary
Run PowerShell commands in the current running process.
### Arguments (Positional)
#### Command
PowerShell command to be executed.
## Usage
```
powershell [command]
powershell -Command [command]
```
Example
```
powershell Get-Process
```
## MITRE ATT&CK Mapping
- T1059
## Detailed Summary
The `powershell` creates a new PowerShell runspace **within the Apollo process** to execute given PowerShell commands. Any PowerShell scripts loaded with the [`psimport`](/agents/apollo/commands/psimport/) command will be loaded into the runspace before command execution, giving access to any cmdlets within those scripts. This method also bypasses the system's PowerShell execution settings before executing commands. PowerShellv4 is used by default.