A new PowerShell script was posted on Github recently that prompts a victim to enter their login credentials, checks if they are correct, and then sends the credentials to a remote server. This allows ...
Execute PowerShell Script using alternate credential with no prompts (High risk to get the securestring file for reverse Engineering). So use it under your own risk.