Commit Graph

621 Commits

Author SHA1 Message Date
fukusuket
ea8ae2ba07 chore: update WELA.ps1 header for CODE BLUE release v2.0.0 2025-11-15 12:43:10 +09:00
fukusuket
288feca218 fix: remove service restart from AuditFilter setting command in WELA.ps1 2025-11-15 10:41:55 +09:00
fukusuket
f07fbfbe2c fix: remove redundant output for AuditFilter setting in WELA.ps1 2025-11-15 10:38:04 +09:00
fukusuket
34ce48c886 fix: remove unnecessary output for AD CS AuditFilter configuration in WELA.ps1 2025-11-15 10:36:38 +09:00
fukusuket
08da2a2d59 fix: remove redundant registry output for AuditFilter check in WELA.ps1 2025-11-15 10:35:06 +09:00
fukusuket
775a716c90 fix: update AuditFilter setting command for improved error handling in WELA.ps1 2025-11-15 10:34:07 +09:00
fukusuket
4d93de3bb5 fix: enhance auditing setup with new auditpol configurations and batch script for event log management 2025-11-15 10:27:34 +09:00
fukusuket
7559cfea84 fix: add AD CS AuditFilter configuration to streamline auditing setup in WELA.ps1 2025-11-15 10:22:36 +09:00
github-actions[bot]
13a601caba Sigma Rule Update (2025-11-14 20:16:08) (#152)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-11-14 20:16:16 +00:00
github-actions[bot]
0bb55a3090 Sigma Rule Update (2025-11-13 20:16:46) (#151)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-11-13 20:16:53 +00:00
github-actions[bot]
8f7628a129 Sigma Rule Update (2025-11-12 20:16:11) (#150)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-11-12 20:16:18 +00:00
github-actions[bot]
6db5596886 Sigma Rule Update (2025-11-11 20:15:20) (#149)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-11-11 20:15:27 +00:00
github-actions[bot]
bb9d02ea40 Sigma Rule Update (2025-11-10 20:17:03) (#148)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-11-10 20:17:10 +00:00
github-actions[bot]
2cf7e3bade Sigma Rule Update (2025-11-09 20:13:57) (#147)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-11-09 20:14:02 +00:00
github-actions[bot]
d188c67857 Sigma Rule Update (2025-11-08 20:13:46) (#146)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-11-08 20:13:51 +00:00
Zach Mathis (田中ザック)
5db55e0d1d Merge pull request #145 from Yamato-Security/Support-Defender-for-Identity-required-logs
feat: Support Defender for Identity required logs
2025-11-08 09:14:27 +08:00
YamatoSecurity
6042536d07 update changelog 2025-11-08 10:13:10 +09:00
fukusuket
22b469cb5e fix: add Set-RegistryConfig function for streamlined registry configuration in WELA.ps1 2025-11-08 09:15:46 +09:00
github-actions[bot]
a6b07b5f1a Sigma Rule Update (2025-11-07 20:14:51) (#144)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-11-07 20:14:58 +00:00
github-actions[bot]
0afd2fb27e Sigma Rule Update (2025-11-06 20:15:43) (#143)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-11-06 20:15:50 +00:00
github-actions[bot]
c983c5355c Sigma Rule Update (2025-11-05 20:16:13) (#142)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-11-05 20:16:20 +00:00
Zach Mathis (田中ザック)
4aacbbf5cb Merge pull request #136 from Yamato-Security/support-crypto-dpapi
feat: support crypto dpapi log
2025-11-05 14:42:04 +08:00
github-actions[bot]
afc9966bfe Sigma Rule Update (2025-11-04 20:16:16) (#140)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-11-04 20:16:23 +00:00
github-actions[bot]
9938656134 Sigma Rule Update (2025-11-03 20:16:24) (#139)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-11-03 20:16:30 +00:00
github-actions[bot]
1b24da737a Sigma Rule Update (2025-11-02 20:13:49) (#138)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-11-02 20:13:56 +00:00
github-actions[bot]
84e21e43cd Sigma Rule Update (2025-11-01 20:13:20) (#137)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-11-01 20:13:26 +00:00
fukusuket
eb81232e7e fix: optimize rule counting logic in WELA.ps1 for improved performance 2025-11-02 02:05:30 +09:00
fukusuket
4fdf712dbf fix: update auditing logic in WELA.ps1 to differentiate between 'No Auditing' and 'Disabled' settings 2025-11-02 00:48:05 +09:00
fukusuket
f30868aa10 fix: add Crypto-DPAPI Debug log size configuration to WELA.ps1 2025-11-02 00:27:00 +09:00
fukusuket
b4db197218 fix: add Crypto-DPAPI Debug logging support to WELA.ps1 2025-11-02 00:26:06 +09:00
github-actions[bot]
9997d976d4 Sigma Rule Update (2025-10-31 20:15:36) (#134)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-10-31 20:15:42 +00:00
Zach Mathis (田中ザック)
93cfdbc29a Merge pull request #125 from Yamato-Security/add-help
feat: add Help option each command
2025-10-31 10:25:53 +08:00
github-actions[bot]
26817e495c Sigma Rule Update (2025-10-30 20:15:36) (#133)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-10-30 20:20:53 +00:00
github-actions[bot]
e76d2e9b5e Sigma Rule Update (2025-10-29 20:15:51) (#132)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-10-29 20:15:57 +00:00
github-actions[bot]
8e9b405696 Sigma Rule Update (2025-10-28 20:16:11) (#131)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-10-28 20:16:17 +00:00
github-actions[bot]
9cbc81773e Sigma Rule Update (2025-10-27 20:13:14) (#130)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-10-27 20:13:22 +00:00
github-actions[bot]
c1224998e2 Sigma Rule Update (2025-10-26 20:14:32) (#129)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-10-26 20:14:37 +00:00
github-actions[bot]
2e77a6ece4 Sigma Rule Update (2025-10-25 20:13:56) (#128)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-10-25 20:14:02 +00:00
fukusuket
b4cd78dfac fix: add Baseline parameter to check-audit.yml for WELA.ps1 audit commands 2025-10-25 09:26:44 +09:00
fukusuket
32183f0592 fix: enhance WELA.ps1 to handle empty Baseline parameter and update help messages for audit commands 2025-10-25 09:03:00 +09:00
github-actions[bot]
513f5c5892 Sigma Rule Update (2025-10-24 20:15:13) (#127)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-10-24 20:15:19 +00:00
github-actions[bot]
48131eada1 Sigma Rule Update (2025-10-23 20:14:49) (#126)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-10-23 20:14:55 +00:00
fukusuket
f920e9aaf6 fix: add Help switch to WELA.ps1 for usage instructions in audit commands 2025-10-23 23:19:51 +09:00
Zach Mathis (田中ザック)
2e9fe1cf4b Merge pull request #120 from Yamato-Security/12-configure-command
feat: Configure command
2025-10-23 08:22:01 +08:00
YamatoSecurity
4b91959be0 update changelog 2025-10-23 09:20:30 +09:00
github-actions[bot]
586d896741 Sigma Rule Update (2025-10-22 20:16:46) (#124)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-10-22 20:16:53 +00:00
fukusuket
c40d79b8c0 fix: update check-audit.yml to include Baseline parameter in configure command and add new audit policy configuration script 2025-10-22 23:12:13 +09:00
fukusuket
11beefd929 fix: add Baseline parameter to WELA.ps1 for enhanced configuration options 2025-10-22 23:10:33 +09:00
fukusuket
010185e1ad fix: update WELA.ps1 to handle empty Baseline parameter and provide usage examples for configure command 2025-10-22 23:09:02 +09:00
github-actions[bot]
3ee364a62a Sigma Rule Update (2025-10-21 20:16:06) (#123)
Co-authored-by: YamatoSecurity <YamatoSecurity@users.noreply.github.com>
2025-10-21 20:16:14 +00:00