mattifestation / WDACToolsLinks
A PowerShell module to facilitate building, configuring, deploying, and auditing Windows Defender Application Control (WDAC) policies
☆237Updated 3 years ago
Alternatives and similar repositories for WDACTools
Users that are interested in WDACTools are comparing it to the libraries listed below
Sorting:
- Tool to convert SDDL to readable text☆42Updated 7 years ago
- Documentation and tools to access Windows Defender Application Control (WDAC) technology.☆255Updated this week
- A collection of free miscellaneous Windows tools☆142Updated 6 months ago
- Module to provide PowerShell functions that abstract Win32 API functions☆250Updated last year
- A collection of Windows software baseline notes with corresponding Windows Defender Application Control (WDAC) policies☆63Updated 2 years ago
- Events from all manifest-based and mof-based ETW providers across Windows 10 versions☆329Updated last year
- Sysmon-Like research tool for ETW☆384Updated 3 years ago
- Documentation and supporting script sample for Windows Exploit Guard☆169Updated 5 months ago
- PowerRunAsSystem is a PowerShell script, also available as an installable module through the PowerShell Gallery, designed to impersonate …☆268Updated last year
- Event Tracing For Windows (ETW) Resources☆415Updated 3 months ago
- AD Live changes viewer☆36Updated 2 years ago
- RPC Monitor tool based on Event Tracing for Windows☆383Updated last year
- Powershell Event Tracing Toolbox☆77Updated 3 years ago
- A Powershell module that helps you identify AppLocker weaknesses☆172Updated 5 years ago
- Windows Detour Hooking in PowerShell☆82Updated last month
- Tool to monitor WMI activity on Windows☆305Updated 5 years ago
- ☆532Updated 8 months ago
- ☆265Updated 3 months ago
- Execute PowerShell code at the antimalware-light protection level.☆142Updated 3 years ago
- A repository that maps API calls to Sysmon Event ID's.☆121Updated 3 years ago
- Windows Diagnostics, Data Collection and Analysis tools☆167Updated 4 years ago
- Run Processes as PPL with ELAM☆175Updated 3 years ago
- ☆260Updated last year
- ☆161Updated 2 years ago
- ☆50Updated last year
- A collection of tools to interact with Microsoft Security Response Center API☆113Updated 2 years ago
- Windows Registry Knowledge Base☆195Updated last month
- A set of troubleshooting, diagnostic, and information utilities (and useful scripts) for Windows☆67Updated 5 months ago
- SysmonX - An Augmented Drop-In Replacement of Sysmon☆216Updated 6 years ago
- Combining Sealighter with unpatched exploits to run the Threat-Intelligence ETW Provider☆197Updated 3 years ago