tomwechsler / Threat_Hunting_with_PowerShellLinks
Security even with a small budget - there is no excuse!
☆20Updated 2 years ago
Alternatives and similar repositories for Threat_Hunting_with_PowerShell
Users that are interested in Threat_Hunting_with_PowerShell are comparing it to the libraries listed below
Sorting:
- AppLocker hardening policies☆26Updated 7 years ago
- A quick and easy PowerShell script to collect a packet trace with option to convert .etl to .pcap.☆39Updated 3 years ago
- PowerShell scripts for fast Windows Event Collector configuration with Palantir toolset☆22Updated 3 years ago
- The Invoke-TrimarcADChecks.ps1 PowerShell script is designed to gather data from a single domain AD forest based on our similar checks pe…☆59Updated 2 years ago
- ☆13Updated 3 years ago
- Automation around Entra ID☆38Updated 5 months ago
- A PowerShell module for incident response and threat hunting.☆38Updated last year
- A WDAC configuration repository with the sole intention of enriching MDE☆29Updated 6 months ago
- Self-contained Hyper-V Active Directory Lab Environment☆59Updated last month
- ☆49Updated last week
- ☆22Updated 2 years ago
- ☆41Updated 2 years ago
- MS Entra ID Protection Guidance☆22Updated last year
- ☆32Updated 3 years ago
- Custom ADMX template focused on hardening Windows 10 & Windows 11 systems☆89Updated last week
- Provides various Windows Server Active Directory (AD) security-focused reports.☆107Updated 2 months ago
- Provides an advanced baseline to implement a secure Windows auditing strategy on Windows OS.☆57Updated 6 months ago
- ☆30Updated 7 months ago
- Windows and macOS Hardening Interface to make security more accessible.☆37Updated 3 years ago
- CIS & Azure Security Center Hardening recommendations implemented in PowerShell DSC from Azure Automation☆34Updated 4 years ago
- Some portable tools, some YARA, some Python, and a little bit of love. Not all of these tools can be used in incident response. Use PEs…☆38Updated 7 months ago
- ☆31Updated 2 years ago
- Scripts and a short guide for using them to tier an Active Directory. Made for BSides Copenhagen 2024☆39Updated 2 months ago
- A small guide on Unknown/Orphaned SIDs and some PowerShell tools to help you get rid of them.☆18Updated 3 years ago
- Sharing presentation slides and workbook templates that can be useful to others to learn more about Azure Active Directory!☆20Updated last year
- This repository is for a beginners PowerShell training course I am holding in central Missouri.☆20Updated 8 years ago
- ☆10Updated 6 months ago
- Analyze Windows Firewall outbound blocks and selectively allow traffic☆69Updated 2 years ago
- ☆61Updated 2 years ago
- PowerShell module that intearacts with the VirusTotal service using a VirusTotal API (free)☆74Updated 2 months ago