• Stars
    star
    3
  • Rank 3,963,521 (Top 79 %)
  • Language
    PowerShell
  • License
    GNU Lesser Genera...
  • Created almost 3 years ago
  • Updated almost 3 years ago

Reviews

There are no reviews yet. Be the first to send feedback to the community and the maintainers!

Repository Details

NotifyIcon for Defender from WMI Event Watcher task

More Repositories

1

SysmonSimulator

Sysmon event simulation utility which can be used to simulate the attacks to generate the Sysmon Event logs for testing the EDR detections and correlation rules by Blue teams.
C
830
star
2

PopulateActiveDirectory

Powershell script to build active directory forest and populate AD with random AD objects including AD users objects, computers objects, groups objects, GPOs and network shares required. It also adds ASREProast account, kerberoastable account, and misconfigured ACLs to the domain for testing purposes
PowerShell
28
star
3

RootDSE-ActiveDirectory

This repo contains files that i refer in my blogs
6
star
4

ActiveDirectoryInstallation

Active Directory Installation Script
PowerShell
6
star
5

Detect-Evil-Machine

A C# tool that detects when a computer account is added to any of the created domain security groups.
C#
3
star
6

Detect-DomainAdmin-Change

Description : A C# tool to detect a change to the domain admins group membership and notify this activity
C#
2
star
7

ASM-NewDCAdmins

A C# tool to gather the administrators on the domain controller (including local accounts) and detects when it changes.
C#
2
star
8

ASM-NewRemoteAdmins

A C# tool to gather the count of administrators on the crown jewel machine and detects when this number changes
C#
1
star
9

Detect-Spray

A C# tool that detects password spraying attempt by using Active Directory user attributes
C#
1
star
10

DC-Rename

It assists in renaming the Domain Controller correctly if something goes wrong while installation of test AD lab
PowerShell
1
star