
ScubaGear
Automation to assess the state of your M365 tenant against CISA's baselines

Automation to assess the state of your M365 tenant against CISA's baselines

HardeningKitty and Windows Hardening Settings

Group Policy Eater is a PowerShell module that aims to gather information about Group Policies but also allows fixing issues that you may find in…

A lightweight PowerShell tool for assessing the security posture of Microsoft Entra ID environments. It helps identify privileged objects, risky…

Read-only PowerShell module for detecting UNC2452 and other threat actor artifacts in Azure AD, auditing federated domains, service principals,…

HardeningKitty - Checks and hardens your Windows configuration

Mitigate log4shell (CVE-2021-44228) vulnerability attacks using Nginx LUA script

Read-only PowerShell security auditor for Windows endpoints and servers: checks Defender configuration, patch status, credentials, persistence,…

This powershell script is intended to be used by anyone looking to remediate the Log4j Vulnerability within their environment. It can target multiple…

Windows Local Privilege Escalation Cookbook

A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.

Scans exported Azure domain dumps for plaintext passwords, connection strings, storage keys, and other secrets; generates redacted CSV/HTML reports…

PowerShell script to detect and remediate CVE-2023-23397 privilege escalation vulnerability in Microsoft Outlook and Exchange environments.

PowerShell script to mitigate CVE-2013-3900 by enabling stricter WinVerifyTrust Authenticode signature validation via registry configuration.

Checks a shared hosting environment for CVE-2017-9798

PowerShell script to remediate CVE-2013-3900 by enabling certificate padding check via registry hardening on Windows systems.

A PowerShell script to temporarily mitigate the CVE-2024-38063 vulnerability by disabling IPv6 on Windows systems. This workaround modifies the…

A simple script to remove Log4J JndiLookup.class from jars in a given directory, to temporarily protect from CVE-2021-45046 and CVE-2021-44228.