Filter By

Package Types

Operating System

Categories

Trust Information

By: | 11 downloads | Last Updated: 4/1/2026 | Latest Version: 5.3.0-preview0001

PowerShell module to audit NTLM authentication events from Windows Security and NTLM Operational logs. Filters by NTLMv1/v2, failed logons, privileged sessions (4672), date ranges, and null sessions. Validates NTLM audit GPO settings. Targets localhost, remote servers, domain controllers, or an entire AD forest.