
soc-investigation-powershell-edrfreeze
SOC investigation of CVE-2024-49138 exploitation alert involving PowerShell, EDRFreeze execution, and defense evasion behavior in a simulated…

SOC investigation of CVE-2024-49138 exploitation alert involving PowerShell, EDRFreeze execution, and defense evasion behavior in a simulated…

Automated remediation of CVE-2025-53783 (Teams RCE) using PowerShell

Custom PowerShell module to setup an Active Directory lab environment to practice penetration testing.

Using Struts2 and PowerShell to recreate CVE-2017-5638 OGNL Injection vulnerability.

Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab

A personal Windows SOC suite built in PowerShell — monitors network connections, resource usage, scheduled tasks and power events with severity…

MasterParser is a powerful DFIR tool designed for analyzing and parsing Linux logs

Building an Active Directory domain and hacking it

Automate the creation of a lab environment complete with security tooling and logging best practices

PowerShell-based provisioning framework for deploying complex lab environments on Hyper-V and Azure. Supports Windows, Linux, and products like AD,…

Enterprise vulnerability management on Azure — Terraform-deployed Nessus scanner, credentialed scanning, CVE-2013-3900 remediation with verified…

High fidelity defensive security lab simulating a DoD aligned enterprise network with Active Directory, VLAN segmentation, STIG based hardening,…

Windows Local Privilege Escalation Cookbook

Hands-on red-team obfuscation workshop teaching AMSI bypass, ETW evasion, and payload obfuscation with PowerShell, Visual Basic, and C# to evade…

Course repository for PowerShell for Pentesters Course

An exercise to practice deobfuscating PowerShell Scripts.

A powershell poc to load and automatically run Certify and Rubeus from memory.

Proof-of-concept security demo illustrating how PowerShell can create trusted-looking Windows toast notifications chained together with…