
Erkennungs- und Entschärfungsskript für CVE-2021-36934 (HiveNightmare aka. SeriousSam)
.\Get-HiveNightmareStatus.ps1
.\Get-HiveNightmareStatus.ps1 -PostureCheck
# Für anfängliche SAM-Korrekturen und VSS-Entfernung
.\Get-HiveNightmareStatus.ps1 -Remediate
# Auch dann beheben, wenn die Prüfungen „Healthy“ oder nur teilweise ergeben
.\Get-HiveNightmareStatus.ps1 -Remediate -Force
.\Get-HiveNightmareStatus.ps1 -Exploit
sentinelone-policy-override.txt an(.\sentinelctl.exe config | Select-String -Pattern "vssSnapshots|penetration")$ (.\sentinelctl.exe config | Select-String -Pattern "vssSnapshots|penetration")
agent.enginesWantedState.penetration off
agent.vssSnapshots false