Shirofune-Security
|
89253fa812
|
Add opt-in Windows PowerShell transcription for CIS Level 2
|
2026-09-19 07:09:33 +09:00 |
|
Shirofune-Security
|
9d993a2a7e
|
Merge branch 'feat/367-native-channel-access' into feat/371-ad-object-sacl
# Conflicts:
# CHANGELOG-Japanese.md
# CHANGELOG.md
# WELA.ps1
# scripts/Configuration.ps1
# website/docs/resources/changelog.ja.md
# website/docs/resources/changelog.md
|
2026-09-19 06:54:08 +09:00 |
|
Shirofune-Security
|
0229348963
|
Merge branch 'feat/381-applocker-readiness' into feat/367-native-channel-access
# Conflicts:
# CHANGELOG-Japanese.md
# CHANGELOG.md
# WELA.ps1
# scripts/Configuration.ps1
# website/docs/resources/changelog.ja.md
# website/docs/resources/changelog.md
|
2026-09-19 06:53:25 +09:00 |
|
Shirofune-Security
|
aff422bf99
|
Merge remote-tracking branch 'origin/dev' into feat/381-applocker-readiness
# Conflicts:
# WELA.ps1
|
2026-09-19 06:52:50 +09:00 |
|
Shirofune-Security
|
86ac6e7bd6
|
Merge dev targeted SACL planning into AppLocker readiness branch
|
2026-09-19 06:51:13 +09:00 |
|
Shirofune-Security
|
d83c2419b0
|
Merge remote-tracking branch 'origin/dev' into feat/367-native-channel-access
# Conflicts:
# WELA.ps1
|
2026-09-19 06:51:10 +09:00 |
|
Shirofune-Security
|
47302ef9ae
|
Merge remote-tracking branch 'origin/dev' into feat/371-ad-object-sacl
|
2026-09-19 06:50:32 +09:00 |
|
Shirofune-Security
|
2c0bbfae0b
|
Merge remote-tracking branch 'origin/dev' into feat/372-wmi-namespace-auditing
|
2026-09-19 06:49:04 +09:00 |
|
Shirofune-Security
|
a74a3e79f0
|
Handle unused AppLocker placeholders without weakening merge enforcement guards
|
2026-09-19 06:25:36 +09:00 |
|
Shirofune-Security
|
521fe3b826
|
Preserve configured user-file suffixes in SACL plans
|
2026-09-19 06:21:18 +09:00 |
|
Shirofune-Security
|
92bf29ec22
|
Isolate unknown dMSA prerequisites from other AD audit classes
|
2026-09-19 06:20:41 +09:00 |
|
Shirofune-Security
|
072bcdf6af
|
Verify native WMI SACL flags on disposable Windows namespaces
|
2026-09-19 06:20:32 +09:00 |
|
Shirofune-Security
|
cbd1c0643b
|
Confirm AD SACL receipt ownership and validate exact PKI parent
|
2026-09-19 05:47:54 +09:00 |
|
Shirofune-Security
|
c338dae12e
|
Add opt-in AD directory object SACL profiles and recovery (issue #371)
|
2026-09-19 05:42:25 +09:00 |
|
Shirofune-Security
|
38bceb3de1
|
Construct unknown ACE fixture without PowerShell enum validation
|
2026-09-19 05:42:06 +09:00 |
|
Shirofune-Security
|
d7f710c9ad
|
Restrict native WMI writes to SACL and verify privilege cleanup
|
2026-09-19 05:41:08 +09:00 |
|
Shirofune-Security
|
5f240d8062
|
Verify locked AppLocker import bytes and reject ignored options
|
2026-09-19 05:40:08 +09:00 |
|
Shirofune-Security
|
1acfec66a3
|
Read unexpanded ProfileList paths before validation
|
2026-09-19 05:36:43 +09:00 |
|
Shirofune-Security
|
1bf6bc26b3
|
Add opt-in native WEF channel settings and preserved CAPI2 read access
|
2026-09-19 05:36:29 +09:00 |
|
Shirofune-Security
|
acde16f149
|
Guard targeted SACL planning paths and ignored skip options
|
2026-09-19 05:35:23 +09:00 |
|
Shirofune-Security
|
9ffd2bd758
|
Assess native AppLocker readiness and guard audit-only imports
|
2026-09-19 05:34:12 +09:00 |
|
Shirofune-Security
|
80db17891d
|
Add opt-in WMI namespace audit SACL workflow
|
2026-09-19 05:30:12 +09:00 |
|
Shirofune-Security
|
b861e86d3a
|
Plan targeted SACL prerequisites alongside audit profiles
|
2026-09-19 05:25:38 +09:00 |
|
Shirofune-Security
|
f2325b5e0b
|
Merge commit 'be3a354' into HEAD
# Conflicts:
# CHANGELOG-Japanese.md
# CHANGELOG.md
# WELA.ps1
# scripts/Configuration.ps1
# website/docs/resources/changelog.ja.md
# website/docs/resources/changelog.md
|
2026-09-19 04:50:15 +09:00 |
|
Shirofune-Security
|
3507734538
|
Merge commit '88c84fa' into HEAD
# Conflicts:
# CHANGELOG-Japanese.md
# CHANGELOG.md
# WELA.ps1
# scripts/Configuration.ps1
# website/docs/resources/changelog.ja.md
# website/docs/resources/changelog.md
|
2026-09-19 04:49:40 +09:00 |
|
Shirofune-Security
|
e43a43bf34
|
Merge commit '966aa21' into HEAD
# Conflicts:
# CHANGELOG-Japanese.md
# CHANGELOG.md
# WELA.ps1
# website/docs/resources/changelog.ja.md
# website/docs/resources/changelog.md
|
2026-09-19 04:48:54 +09:00 |
|
Shirofune-Security
|
157fb56bee
|
Merge commit 'a10e1d6' into HEAD
# Conflicts:
# scripts/Configuration.ps1
|
2026-09-19 04:48:19 +09:00 |
|
Shirofune-Security
|
966aa21a46
|
Enumerate corpus rules explicitly in PowerShell 5.1 fixtures
|
2026-09-19 04:40:13 +09:00 |
|
Shirofune-Security
|
be3a354f18
|
Separate SMB policy verification from runtime activation
|
2026-09-19 04:39:55 +09:00 |
|
Shirofune-Security
|
70e6207a84
|
Match rule channel patterns consistently against concrete sources
|
2026-09-19 04:37:02 +09:00 |
|
Shirofune-Security
|
24a77ee9ce
|
Read audit precedence provenance from documented RSoP schemas
|
2026-09-19 02:35:06 +09:00 |
|
Shirofune-Security
|
a10e1d6e84
|
Reject firewall log path drift before configuration
|
2026-09-19 02:33:53 +09:00 |
|
Shirofune-Security
|
2ea509700b
|
Add version-aware opt-in SMB audit policy controls
|
2026-09-19 02:33:13 +09:00 |
|
Shirofune-Security
|
6f1ad9d93b
|
Verify safe HTML evidence across PowerShell JSON encoders
|
2026-09-19 02:33:12 +09:00 |
|
Shirofune-Security
|
d29ffdd01b
|
Unify event-log size and retention profiles with verified configuration
|
2026-09-19 02:30:41 +09:00 |
|
Shirofune-Security
|
c4c7a33962
|
Assess native channels and provider prerequisites without static enabled claims
|
2026-09-19 02:29:56 +09:00 |
|
Shirofune-Security
|
fbe8f95117
|
Add opt-in native firewall text logging controls
|
2026-09-19 02:24:38 +09:00 |
|
Shirofune-Security
|
1a12220b51
|
Verify advanced audit precedence before applying subcategories
|
2026-09-19 02:21:55 +09:00 |
|
Shirofune-Security
|
7d2117ebba
|
Fix audit applicability, NTLM value types, and native exit verification
|
2026-09-19 00:36:38 +09:00 |
|
Shirofune-Security
|
71215ab498
|
Merge main and preserve NTLM output regression coverage
|
2026-09-19 00:28:55 +09:00 |
|
Shirofune-Security
|
bf69494bd9
|
Report configuration-only audit states without rule coverage inference
|
2026-09-18 22:59:25 +09:00 |
|
Shirofune-Security
|
9bd56a0840
|
Scope integration test doubles alongside script-local helpers
|
2026-09-18 22:16:11 +09:00 |
|
Shirofune-Security
|
4c2193964e
|
Keep deferred configuration callbacks in script scope on PowerShell 5.1
|
2026-09-18 22:13:58 +09:00 |
|
Shirofune-Security
|
595f123327
|
Test unsupported dry-run rejection and NTLM policy races safely
|
2026-09-18 22:12:30 +09:00 |
|
Shirofune-Security
|
60e6552823
|
Integrate standalone outgoing NTLM fresh-state safeguards
|
2026-09-18 22:10:17 +09:00 |
|
Shirofune-Security
|
bc9e098c81
|
Recheck outgoing NTLM enforcement after confirmation
|
2026-09-18 22:09:37 +09:00 |
|
Shirofune-Security
|
ebd8d14d04
|
Include read-only Windows CLI profile smoke checks
|
2026-09-18 22:06:06 +09:00 |
|
Shirofune-Security
|
6392c9bd58
|
Merge commit 'f4f9c33' into feat/369-missing-audit-controls
|
2026-09-18 22:05:30 +09:00 |
|
Shirofune-Security
|
aa34a0360b
|
Integrate minimum-policy and role-detection safeguards
|
2026-09-18 22:05:29 +09:00 |
|
Shirofune-Security
|
d96f04dcef
|
Integrate profile masks metadata and dry runs with verified execution
|
2026-09-18 22:05:25 +09:00 |
|