
ScubaGear
Automation to assess the state of your M365 tenant against CISA's baselines

Automation to assess the state of your M365 tenant against CISA's baselines

HardeningKitty and Windows Hardening Settings

A lightweight PowerShell tool for assessing the security posture of Microsoft Entra ID environments. It helps identify privileged objects, risky…

Group Policy Eater is a PowerShell module that aims to gather information about Group Policies but also allows fixing issues that you may find in…

Read-only PowerShell security auditor for Windows endpoints and servers: checks Defender configuration, patch status, credentials, persistence,…

Scans exported Azure domain dumps for plaintext passwords, connection strings, storage keys, and other secrets; generates redacted CSV/HTML reports…

A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.

HardeningKitty - Checks and hardens your Windows configuration

Automated PowerShell orchestrator for applying Secure Boot mitigations against CVE-2023-24932 (BlackLotus). Handles registry changes, reboots,…

Discover input surfaces and security issues in compiled .NET assemblies — without running them.

Windows Local Privilege Escalation Cookbook

PowerShell script to remediate CVE-2013-0007 by unregistering and renaming unsupported MSXML 4.0 DLLs, suppressing vulnerability scanner findings on…

PowerShell script to mitigate CVE-2013-3900 by enabling stricter WinVerifyTrust Authenticode signature validation via registry configuration.

PowerShell script to remediate CVE-2013-3900 by enabling certificate padding check via registry hardening on Windows systems.

A PowerShell script to temporarily mitigate the CVE-2024-38063 vulnerability by disabling IPv6 on Windows systems. This workaround modifies the…

Bash script to detect and remediate CVE-2024-3094, a critical supply-chain vulnerability in the XZ Utils library, with automatic safe version…

This powershell script is intended to be used by anyone looking to remediate the Log4j Vulnerability within their environment. It can target multiple…

PowerShell script to apply Microsoft's recommended registry-based workaround for CVE-2023-36884, mitigating remote code execution risk on Windows…