Jump to content
YOUR-AD-HERE
HOSTING
TOOLS

Locked PowerShell script to automate client pentest


dEEpEst

Recommended Posts

What does it do

You should run it as admin, as certain stuff can only be queries with elevated rights.

It is used to check a client for common misconfigurations. The list currently includes:

 

Default Domain Password Policy

LSA Protection Settings

WDAC Usage

AppLocker Usage

Credential Guard Settings

Co-installer Settings

DMA Protection Settings

BitLocker Settings

Secure Boot Settings

System PATH ACL checks

Unquoted Service Path checks

Always Install Elevated checks

UAC checks

WSUS Settings

PowerShell Settings

IPv6 Settings

NetBIOS / LLMNR Settings

SMB Server Settings

Firewall Settings

AV Settings

Proxy Settings

Windows Updates

3rd Party Installations

RDP Settings

WinRM Settings

This is the hidden content, please
/applications/core/interface/js/spacer.png">

This is the hidden content, please

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.