田中ザック Isaac Mathis
|
c34fcc2774
|
Merge pull request #406 from Shirofune-Security/feat/368-wef-deployment
Add opt-in native WEF source and collector provisioning
|
2026-09-20 08:42:42 +09:00 |
|
田中ザック Isaac Mathis
|
39c82dcf00
|
Merge pull request #405 from Shirofune-Security/feat/376-powershell-transcription
Add opt-in Windows PowerShell transcription for CIS Level 2
|
2026-09-20 08:39:53 +09:00 |
|
田中ザック Isaac Mathis
|
3172ea1101
|
Merge pull request #404 from Shirofune-Security/feat/383-ldap-diagnostics
Make LDAP 1644 diagnostics explicit and preserve existing DC settings
|
2026-09-20 08:39:13 +09:00 |
|
田中ザック Isaac Mathis
|
72704d4780
|
Merge pull request #403 from Shirofune-Security/fix/380-audit-catalog-mappings
Correct token audit GUID and validate catalog mapping uncertainty
|
2026-09-20 08:36:22 +09:00 |
|
田中ザック Isaac Mathis
|
3f6fe32ce7
|
Merge pull request #402 from Shirofune-Security/feat/371-ad-object-sacl
Add opt-in AD object and Configuration partition audit SACLs
|
2026-09-19 19:49:50 +09:00 |
|
田中ザック Isaac Mathis
|
5665fd2f0f
|
Merge pull request #401 from Shirofune-Security/feat/367-native-channel-access
Configure native WEF channel prerequisites and CAPI2 read access
|
2026-09-19 19:49:07 +09:00 |
|
田中ザック Isaac Mathis
|
f0444aedef
|
Merge pull request #400 from Shirofune-Security/feat/381-applocker-readiness
Assess native AppLocker readiness and guard audit-only imports
|
2026-09-19 19:48:26 +09:00 |
|
田中ザック Isaac Mathis
|
423277428a
|
Merge pull request #399 from Shirofune-Security/feat/372-wmi-namespace-auditing
Add opt-in WMI namespace audit SACL configuration
|
2026-09-19 19:45:11 +09:00 |
|
田中ザック Isaac Mathis
|
ded0b9c375
|
Merge pull request #398 from Shirofune-Security/feat/373-targeted-sacl-planning
Plan targeted SACL prerequisites alongside audit profiles
|
2026-09-19 19:41:51 +09:00 |
|
Shirofune-Security
|
9815e609d8
|
Integrate reviewed catalog and LDAP commands into WEF branch
|
2026-09-19 11:48:11 +09:00 |
|
Shirofune-Security
|
f1b5be8bf2
|
Merge reviewed PowerShell transcription into WEF integration
|
2026-09-19 11:45:59 +09:00 |
|
Shirofune-Security
|
03265a0940
|
Merge commit '26d7f8b09df915c0f2b3dc837112f5f963b437a7' into feat/376-powershell-transcription
|
2026-09-19 11:45:34 +09:00 |
|
Shirofune-Security
|
273af05e36
|
Merge reviewed LDAP diagnostics into transcription branch
|
2026-09-19 11:45:34 +09:00 |
|
Shirofune-Security
|
26d7f8b09d
|
Merge remote-tracking branch 'origin/dev' into feat/383-ldap-diagnostics
# Conflicts:
# CHANGELOG-Japanese.md
# CHANGELOG.md
# website/docs/resources/changelog.ja.md
# website/docs/resources/changelog.md
|
2026-09-19 11:45:13 +09:00 |
|
Shirofune-Security
|
f930331314
|
Clear handled native-read exit status after Windows smoke assertions
|
2026-09-19 07:35:04 +09:00 |
|
Shirofune-Security
|
0403f14446
|
Clear expected child failure exit status after CLI assertions
|
2026-09-19 07:33:32 +09:00 |
|
Shirofune-Security
|
787c66e009
|
Normalize WEF XML evidence before PowerShell 5.1 JSON serialization
|
2026-09-19 07:31:23 +09:00 |
|
Shirofune-Security
|
9b93473904
|
Link WEF provisioning changelog to PR 406
|
2026-09-19 07:24:31 +09:00 |
|
Shirofune-Security
|
9a69600947
|
Add opt-in native WEF source and collector subscription controls
|
2026-09-19 07:23:47 +09:00 |
|
Shirofune-Security
|
bca56fbad9
|
Link LDAP diagnostics changelog to PR 404
|
2026-09-19 07:18:27 +09:00 |
|
Shirofune-Security
|
c7cfb0d112
|
Reject LDAP options before profile command dispatch
|
2026-09-19 07:15:31 +09:00 |
|
Shirofune-Security
|
e0d531c669
|
Record passing Windows transcription evidence and link PR 405
|
2026-09-19 07:13:22 +09:00 |
|
Shirofune-Security
|
89253fa812
|
Add opt-in Windows PowerShell transcription for CIS Level 2
|
2026-09-19 07:09:33 +09:00 |
|
Shirofune-Security
|
9e2b4b5b43
|
Make LDAP 1644 diagnostics explicit and preserve existing DC settings
|
2026-09-19 07:09:07 +09:00 |
|
Shirofune-Security
|
45b6be91a8
|
Link audit catalog changelog entries to PR 403
|
2026-09-19 07:07:43 +09:00 |
|
Shirofune-Security
|
b2b7e0a9f7
|
Correct legacy token audit GUID and validate catalog mapping uncertainty
|
2026-09-19 07:01:50 +09:00 |
|
Shirofune-Security
|
9d993a2a7e
|
Merge branch 'feat/367-native-channel-access' into feat/371-ad-object-sacl
# Conflicts:
# CHANGELOG-Japanese.md
# CHANGELOG.md
# WELA.ps1
# scripts/Configuration.ps1
# website/docs/resources/changelog.ja.md
# website/docs/resources/changelog.md
|
2026-09-19 06:54:08 +09:00 |
|
Shirofune-Security
|
0229348963
|
Merge branch 'feat/381-applocker-readiness' into feat/367-native-channel-access
# Conflicts:
# CHANGELOG-Japanese.md
# CHANGELOG.md
# WELA.ps1
# scripts/Configuration.ps1
# website/docs/resources/changelog.ja.md
# website/docs/resources/changelog.md
|
2026-09-19 06:53:25 +09:00 |
|
Shirofune-Security
|
aff422bf99
|
Merge remote-tracking branch 'origin/dev' into feat/381-applocker-readiness
# Conflicts:
# WELA.ps1
|
2026-09-19 06:52:50 +09:00 |
|
Shirofune-Security
|
86ac6e7bd6
|
Merge dev targeted SACL planning into AppLocker readiness branch
|
2026-09-19 06:51:13 +09:00 |
|
Shirofune-Security
|
d83c2419b0
|
Merge remote-tracking branch 'origin/dev' into feat/367-native-channel-access
# Conflicts:
# WELA.ps1
|
2026-09-19 06:51:10 +09:00 |
|
Shirofune-Security
|
47302ef9ae
|
Merge remote-tracking branch 'origin/dev' into feat/371-ad-object-sacl
|
2026-09-19 06:50:32 +09:00 |
|
Shirofune-Security
|
2c0bbfae0b
|
Merge remote-tracking branch 'origin/dev' into feat/372-wmi-namespace-auditing
|
2026-09-19 06:49:04 +09:00 |
|
Shirofune-Security
|
a74a3e79f0
|
Handle unused AppLocker placeholders without weakening merge enforcement guards
|
2026-09-19 06:25:36 +09:00 |
|
Shirofune-Security
|
bf12f186fb
|
Record verified WMI control flags and disposable test scope
|
2026-09-19 06:23:14 +09:00 |
|
Shirofune-Security
|
521fe3b826
|
Preserve configured user-file suffixes in SACL plans
|
2026-09-19 06:21:18 +09:00 |
|
Shirofune-Security
|
92bf29ec22
|
Isolate unknown dMSA prerequisites from other AD audit classes
|
2026-09-19 06:20:41 +09:00 |
|
Shirofune-Security
|
072bcdf6af
|
Verify native WMI SACL flags on disposable Windows namespaces
|
2026-09-19 06:20:32 +09:00 |
|
Shirofune-Security
|
cbd1c0643b
|
Confirm AD SACL receipt ownership and validate exact PKI parent
|
2026-09-19 05:47:54 +09:00 |
|
Shirofune-Security
|
496423bb8c
|
Reference PR 402 in bilingual changelogs
|
2026-09-19 05:44:21 +09:00 |
|
Shirofune-Security
|
c338dae12e
|
Add opt-in AD directory object SACL profiles and recovery (issue #371)
|
2026-09-19 05:42:25 +09:00 |
|
Shirofune-Security
|
38bceb3de1
|
Construct unknown ACE fixture without PowerShell enum validation
|
2026-09-19 05:42:06 +09:00 |
|
Shirofune-Security
|
d7f710c9ad
|
Restrict native WMI writes to SACL and verify privilege cleanup
|
2026-09-19 05:41:08 +09:00 |
|
Shirofune-Security
|
5f240d8062
|
Verify locked AppLocker import bytes and reject ignored options
|
2026-09-19 05:40:08 +09:00 |
|
Shirofune-Security
|
75fd28a3d5
|
Use integer masks for byte-backed ACE flags on PowerShell 5.1
|
2026-09-19 05:40:00 +09:00 |
|
Shirofune-Security
|
c89a28190a
|
Bind Windows descriptor byte overload explicitly and link PR 401
|
2026-09-19 05:38:28 +09:00 |
|
Shirofune-Security
|
1acfec66a3
|
Read unexpanded ProfileList paths before validation
|
2026-09-19 05:36:43 +09:00 |
|
Shirofune-Security
|
1bf6bc26b3
|
Add opt-in native WEF channel settings and preserved CAPI2 read access
|
2026-09-19 05:36:29 +09:00 |
|
Shirofune-Security
|
acde16f149
|
Guard targeted SACL planning paths and ignored skip options
|
2026-09-19 05:35:23 +09:00 |
|
Shirofune-Security
|
6fbef0ff6b
|
Reference PR 400 in bilingual changelogs
|
2026-09-19 05:35:09 +09:00 |
|