Security configuration is complex. With thousands of group policies available in Windows, choosing the “best” setting is difficult. It’s not always obvious which permutations of policies are required to implement a complete scenario, and there are often unintended consequences of some security lockdowns. The SECCON Baselines divide configuratio…
☆283Nov 28, 2022Updated 3 years ago
Alternatives and similar repositories for SecCon-Framework
Users that are interested in SecCon-Framework are comparing it to the libraries listed below
Sorting:
- Robust and practical application control for Windows☆686Aug 12, 2022Updated 3 years ago
- An Azure automation runbook to automaticly patch Win32 Available apps in MSIntune and integration with Proactive Remediations for End Use…☆20Oct 3, 2020Updated 5 years ago
- Repository for Intune Reporting using Azure Monitor, Log Analytics and Azure Workbooks☆54Jun 21, 2024Updated last year
- TrustedSec Sysinternals Sysmon Community Guide☆1,372Feb 10, 2026Updated 2 weeks ago
- GoldenSAML Attack Libraries and Framework☆77Jun 5, 2024Updated last year
- Attack Surface Analyzer can help you analyze your operating system's security configuration for changes during software installation.☆2,916Updated this week
- ☆646Jun 6, 2023Updated 2 years ago
- A set of tools to assist with the creation of Intune managed virtual machines in Hyper-V.☆91Aug 19, 2024Updated last year
- Tooling for assessing an Azure AD tenant state and configuration☆830Jun 12, 2024Updated last year
- Automated process to build and distribute Posture & Exposure Reports' bi-weekly to customers.☆16Jul 16, 2025Updated 7 months ago
- CA Optics - Azure AD Conditional Access Gap Analyzer☆334Aug 28, 2024Updated last year
- Documentation and tools to access Windows Defender Application Control (WDAC) technology.☆256Feb 5, 2026Updated 3 weeks ago
- Creating a hardened "Blue Forest" with Server 2016/2019 Domain Controllers☆270Feb 12, 2026Updated 2 weeks ago
- Malware, spam, and phishing indicators of compromise that involve the use of COVID-19 or coronavirus in some way☆34Jul 4, 2020Updated 5 years ago
- Contact: CRT@crowdstrike.com☆746Apr 27, 2023Updated 2 years ago
- Attack Graph Visualizer and Explorer (Active Directory) ...Who's *really* Domain Admin?☆2,139Feb 21, 2026Updated last week
- Automated review process for your Azure AD guest accounts.☆17Sep 22, 2020Updated 5 years ago
- System Tray Tool for WDAC☆38Jun 25, 2025Updated 8 months ago
- Sysmon configuration file template with default high-quality event tracing☆573Jan 21, 2026Updated last month
- All about automating the Modern and Secure Workplace based on Windows 10, Intune, Syntaro and Azure.☆82Mar 22, 2025Updated 11 months ago
- This tool aims at parsing Microsoft Protection logs to provide relevant data to forensic analysts during incident responses.☆21Sep 30, 2022Updated 3 years ago
- A curated list of awesome Security Hardening techniques for Windows.☆1,790Jan 7, 2020Updated 6 years ago
- Universal Windows Driver information for ITPros and UHFT (UWD HSA Fix Tool).☆13Apr 26, 2021Updated 4 years ago
- Scripts and tools for Cloud Managed Windows 10☆50Sep 24, 2025Updated 5 months ago
- Directory Services Internals (DSInternals) PowerShell Module and Framework☆1,901Feb 9, 2026Updated 2 weeks ago
- A repo for sample MDATP Power BI Templates☆205Jun 15, 2021Updated 4 years ago
- Configuration guidance for implementing the Windows 10 and Windows Server 2016 DoD Secure Host Baseline settings. #nsacyber☆1,596Dec 24, 2022Updated 3 years ago
- A repository of sysmon configuration modules☆2,980Aug 21, 2024Updated last year
- Provision a brand-new company with proper defaults in Windows, Offic365, and Azure☆616Aug 17, 2024Updated last year
- HardeningKitty and Windows Hardening Settings☆2,591Updated this week
- Tool to backup, update and document configurations in Intune☆371Jun 13, 2025Updated 8 months ago
- ☆118Jun 2, 2021Updated 4 years ago
- Simplify PAW and SPA for the masses, unify the MS Internal, and public PAW specs, and expedite deployment to ~5min or less.☆60Aug 30, 2022Updated 3 years ago
- Automation to assess the state of your M365 tenant against CISA's baselines☆2,470Updated this week
- This repository contains policy packs which can be used by system management software to configure device platforms (such as Windows 10 a…☆451Sep 29, 2025Updated 5 months ago
- Additional Resources to improve Customer Experience with Microsoft Cloud App Security☆157Nov 28, 2022Updated 3 years ago
- Intune managed Secured workstation☆258Aug 13, 2024Updated last year
- MDATP☆456Jul 20, 2024Updated last year
- Basic c2-matrix analysis enviroment using Suricata + Wazuh + Elastic stack☆12Apr 18, 2020Updated 5 years ago