mattifestation / WDACToolsLinks
A PowerShell module to facilitate building, configuring, deploying, and auditing Windows Defender Application Control (WDAC) policies
☆218Updated 3 years ago
Alternatives and similar repositories for WDACTools
Users that are interested in WDACTools are comparing it to the libraries listed below
Sorting:
- Documentation and tools to access Windows Defender Application Control (WDAC) technology.☆234Updated last month
- Module to provide PowerShell functions that abstract Win32 API functions☆247Updated last year
- Tool to convert SDDL to readable text☆40Updated 7 years ago
- A collection of free miscellaneous Windows tools☆135Updated 10 months ago
- Events from all manifest-based and mof-based ETW providers across Windows 10 versions☆300Updated last year
- A collection of Windows software baseline notes with corresponding Windows Defender Application Control (WDAC) policies☆62Updated last year
- Documentation and supporting script sample for Windows Exploit Guard☆156Updated 3 years ago
- Sysmon-Like research tool for ETW☆353Updated 2 years ago
- Tool to monitor WMI activity on Windows☆287Updated 4 years ago
- A Powershell module that helps you identify AppLocker weaknesses☆168Updated 5 years ago
- RPC Monitor tool based on Event Tracing for Windows☆360Updated 10 months ago
- ☆258Updated 7 months ago
- AD Live changes viewer☆36Updated 2 years ago
- Powershell Event Tracing Toolbox☆75Updated 3 years ago
- Windows Detour Hooking in PowerShell☆82Updated last year
- PowerRunAsSystem is a PowerShell script, also available as an installable module through the PowerShell Gallery, designed to impersonate …☆263Updated 9 months ago
- A collection of tools to interact with Microsoft Security Response Center API☆98Updated last year
- A repository that maps API calls to Sysmon Event ID's.☆122Updated 2 years ago
- ☆115Updated 5 years ago
- Useful access control entries (ACE) on system access control list (SACL) of securable objects to find potential adversarial activity☆93Updated 3 years ago
- Execute PowerShell code at the antimalware-light protection level.☆141Updated 2 years ago
- Event Tracing For Windows (ETW) Resources☆391Updated 9 months ago
- ☆68Updated 3 years ago
- SysmonX - An Augmented Drop-In Replacement of Sysmon☆215Updated 5 years ago
- A set of troubleshooting, diagnostic, and information utilities for Windows☆59Updated 3 weeks ago
- Sysmon Tools for PowerShell☆230Updated 6 years ago
- ☆520Updated last month
- ☆158Updated last year
- Windows Diagnostics, Data Collection and Analysis tools☆166Updated 4 years ago
- Windows Registry Knowledge Base☆176Updated 9 months ago