mattifestation / WDACTools
A PowerShell module to facilitate building, configuring, deploying, and auditing Windows Defender Application Control (WDAC) policies
☆215Updated 3 years ago
Alternatives and similar repositories for WDACTools
Users that are interested in WDACTools are comparing it to the libraries listed below
Sorting:
- Documentation and tools to access Windows Defender Application Control (WDAC) technology.☆229Updated this week
- Module to provide PowerShell functions that abstract Win32 API functions☆247Updated 11 months ago
- A collection of Windows software baseline notes with corresponding Windows Defender Application Control (WDAC) policies☆62Updated last year
- Events from all manifest-based and mof-based ETW providers across Windows 10 versions☆297Updated last year
- Documentation and supporting script sample for Windows Exploit Guard☆156Updated 3 years ago
- A Powershell module that helps you identify AppLocker weaknesses☆168Updated 5 years ago
- A set of troubleshooting, diagnostic, and information utilities for Windows☆56Updated last month
- Sysmon-Like research tool for ETW☆352Updated 2 years ago
- Windows Diagnostics, Data Collection and Analysis tools☆165Updated 4 years ago
- Tool to convert SDDL to readable text☆40Updated 7 years ago
- PowerRunAsSystem is a PowerShell script, also available as an installable module through the PowerShell Gallery, designed to impersonate …☆261Updated 7 months ago
- A collection of free miscellaneous Windows tools☆134Updated 8 months ago
- Public content repo for ATA documentation in OPS☆74Updated 3 months ago
- RPC Monitor tool based on Event Tracing for Windows☆349Updated 8 months ago
- ☆113Updated 5 years ago
- Event Tracing For Windows (ETW) Resources☆379Updated 7 months ago
- ☆514Updated 4 months ago
- ☆48Updated 10 months ago
- PowerShell Module for managing Microsoft Defender Advanced Threat Protection☆71Updated 2 years ago
- ☆257Updated 5 months ago
- Sysmon Tools for PowerShell☆229Updated 6 years ago
- Custom ADMX template focused on hardening Windows 10 & Windows 11 systems☆82Updated this week
- A tiny tool built to help AD Admins tame the Protected Users group.☆46Updated 3 months ago
- ☆246Updated last year
- Powershell Event Tracing Toolbox☆75Updated 3 years ago
- ☆59Updated last year
- ☆216Updated 2 years ago
- Maintain Tier 0 users. This script take care all Tier 0 users are in the correct OU or in the default user container and add the Kerberos…☆62Updated last month
- AD Live changes viewer☆35Updated 2 years ago
- Useful access control entries (ACE) on system access control list (SACL) of securable objects to find potential adversarial activity☆90Updated 3 years ago