Stars
A repository of sysmon configuration modules
HardeningKitty - Checks and hardens your Windows configuration
A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.
This repo is about Active Directory Advanced Threat Hunting
A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.
A collection of PowerShell scripts for analyzing data from Microsoft 365 and Microsoft Entra ID
PowerShell scripts for alternative SharpHound enumeration, including users, groups, computers, and certificates, using the ActiveDirectory module (ADWS) or System.DirectoryServices class (LDAP).
PowerShell tools to help defenders hunt smarter, hunt harder.
Monitor your PingCastle scans to highlight the rule diff between two scans
Automating the baseline logging settings found here: https://nullsec.us/windows-baseline-logging/
Simulation of Akira Ransomware with Invoke-AtomicTest
Simulation of Black Basta Ransomware
Scripts that emulate TTPs associated with Ransomware and other Attacks