
CVE-2025-47981
PowerShell assessment script that checks Windows systems for CVE-2025-47981 (SPNEGO NEGOEX heap overflow) by verifying kernel version, PKU2U registry…

PowerShell assessment script that checks Windows systems for CVE-2025-47981 (SPNEGO NEGOEX heap overflow) by verifying kernel version, PKU2U registry…

Kerberos RC4 deprecation: detection, remediation and guidance (CVE-2026-20833)

PowerShell script to check, apply, and test the Kill-Bit protection for the CVE-2026-21509 Microsoft Office zero-day vulnerability affecting Office…

PowerShell script that applies a temporary registry-based mitigation for CVE-2026-21509, a Microsoft Office security feature bypass, with backup and…

Powershell script with Detection and Remediation for CVE-2026-21509

Module PowerShell de réponse à l'incident CVE-2025-59287 — WSUS Remote Code Execution (RCE)

Open-source platform to secure and manage endpoints via MDM, patch management, software deployment, and osquery-powered visibility with compliance…

Provides PowerShell and batch scripts to back up, restore, and adjust Access Control Lists (ACLs) mitigating PrintNightmare Print Spooler…

Read-only PowerShell security auditor for Windows endpoints and servers: checks Defender configuration, patch status, credentials, persistence,…

Tooling for assessing an Azure AD tenant state and configuration

Powershell module for VMWare vSphere forensics

HardeningKitty - Checks and hardens your Windows configuration

Automation to assess the state of your M365 tenant against CISA's baselines

Canary Hunter aims to be a quick PowerShell script to check for Common Canaries in various formats generated for free on canarytokens.org

HardeningKitty and Windows Hardening Settings

Windows Local Privilege Escalation Cookbook

Scans exported Azure domain dumps for plaintext passwords, connection strings, storage keys, and other secrets; generates redacted CSV/HTML reports…

A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.