Two forensics experts have demonstrated how to abuse the Windows Desired State Configuration (DSC) feature to gain persistence on the compromised machine. The attack requires PS 4.0 on victim and the use of a command and control infrastructure and Admin privileges on the victim host. DSC is a Powershell extension implemented in Windows Server 2012 R2 and Windows 8.1. The duo has released the DSCompromised framework of Powershell scripts and modules that could be used by attackers to abuse DSC.”]
Source: https://securityaffairs.co/wordpress/46006/hacking/abusing-windows-dsc.html