Filter By
Displaying results 1 - 3 of 3 (Page 1 of 1)
|
By:
|
50 downloads
|
Last Updated: 3/31/2026
|
Latest Version: 2.1.3
A comprehensive PowerShell toolkit for RDP forensics analysis, tracking connection attempts, authentication, sessions, and logoffs across Windows Event Logs for security monitoring and incident response. |
|
By:
|
25 downloads
|
Last Updated: 4/1/2026
|
Latest Version: 5.3.0-preview0001
PowerShell module to audit NTLM authentication events from Windows Security and NTLM Operational logs. Filters by NTLMv1/v2, failed logons, privileged sessions (4672), date ranges, and null sessions. Validates NTLM audit GPO settings. Targets localhost, remote servers, domain controllers, or an entire AD forest. |
|
By:
|
47 downloads
|
Last Updated: 3/12/2026
|
Latest Version: 1.0.4
Real-time Windows Event Log monitoring and alerting module for PowerShell. EventMonitor.Windows enables security monitoring, automation, observability pipelines, SIEM integration, telemetry, and AI agent orchestration using EventLogWatcher for instant OS-level event delivery. Monitors 40+ event IDs across 17 groups: logon/logoff, failed authen... More info |