
Audix
Audix is a PowerShell tool to quickly configure the Windows Event Audit Policies for security monitoring

Audix is a PowerShell tool to quickly configure the Windows Event Audit Policies for security monitoring

This is repository contains a script to check for current IOCs listed in the freepbx forum topic of the CVE-2025-57819


Automate the creation of a lab environment complete with security tooling and logging best practices

Audits Windows event log settings against best-practice guidelines and Sigma-rule detectability, with automated configuration for DFIR readiness.

A small script to apply Yellowkey mitigation based on CVE-2026-45585 instructions

Check to see if your Palo Alto firewall has been compromised by running script againt support bundle.


Documentation and scripts to properly enable Windows event logs.

DetectionLabELK is a fork from DetectionLab with ELK stack instead of Splunk.

Production-ready detection & response queries for osquery

Read, understand and silence the Windows GDID device identifier (the ID that tracked a hacker through a VPN). Verified on a real Win11 VM. Honest: it…

Blue Team detection lab created with Terraform and Ansible in Azure.

Audit Preference Pane and Log Reader for OS X

Active Directory Forensic Toolkit : Detect & reconstruct AD attacks from Windows event logs (EVTX)

Trace every shell environment variable to its exact file and line origin. Audit shell configs for dead entries, duplicates, and orphaned files across…

Systematic Linux kernel hardening project implementing KSPP-recommended settings, module blacklisting, and restricted environment configuration for…

linux security checks