microsoft / AttackSurfaceAnalyzerLinks
Attack Surface Analyzer can help you analyze your operating system's security configuration for changes during software installation.
☆2,904Updated 3 weeks ago
Alternatives and similar repositories for AttackSurfaceAnalyzer
Users that are interested in AttackSurfaceAnalyzer are comparing it to the libraries listed below
Sorting:
- Investigate malicious Windows logon by visualizing and analyzing Windows event log☆3,028Updated 2 months ago
- Sysmon configuration file template with default high-quality event tracing☆5,326Updated last year
- PingCastle - Get Active Directory Security at 80% in 20% of the time☆2,711Updated 2 months ago
- ☆2,664Updated last year
- A curated list of awesome Security Hardening techniques for Windows.☆1,792Updated 5 years ago
- A repository of sysmon configuration modules☆2,942Updated last year
- Sparrow.ps1 was created by CISA's Cloud Forensics team to help detect possible compromised accounts and applications in the Azure/m365 en…☆1,431Updated 3 years ago
- Configuration guidance for implementing the Windows 10 and Windows Server 2016 DoD Secure Host Baseline settings. #nsacyber☆1,584Updated 3 years ago
- HardeningKitty and Windows Hardening Settings☆2,573Updated 3 weeks ago
- Automate the creation of a lab environment complete with security tooling and logging best practices☆4,880Updated last year
- Rapidly Search and Hunt through Windows Forensic Artefacts☆3,410Updated 2 months ago
- TrustedSec Sysinternals Sysmon Community Guide☆1,320Updated 2 weeks ago
- Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term o…☆2,611Updated 2 weeks ago
- ☆2,366Updated 2 years ago
- Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis…☆2,510Updated last year
- Utilities for Sysmon☆1,564Updated 3 months ago
- A repository for using windows event forwarding for incident detection and response☆1,289Updated 3 months ago
- Microsoft Threat Intelligence Security Tools☆1,927Updated last week
- Sysmon for Linux☆2,045Updated 5 months ago
- Open EDR public repository☆2,576Updated last year
- Complete Mandiant Offensive VM (Commando VM), a fully customizable Windows-based pentesting virtual machine distribution. commandovm@mand…☆7,442Updated 2 months ago
- Directory Services Internals (DSInternals) PowerShell Module and Framework☆1,876Updated this week
- Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs an…☆2,302Updated last week
- My musings with PowerShell☆2,697Updated 4 years ago
- Six Degrees of Domain Admin☆10,473Updated 4 months ago
- An Active Defense and EDR software to empower Blue Teams☆1,313Updated 2 years ago
- AutomatedLab is a provisioning solution and framework that lets you deploy complex labs on HyperV and Azure with simple PowerShell script…☆2,159Updated last month
- Digging Deeper....☆3,635Updated this week
- Azure Red Team tool for graphing Azure and Azure Active Directory objects☆1,672Updated last year
- Automated Adversary Emulation Platform☆6,629Updated last week