AnthonyG05/-PowerShell-Security-Scripts

GitHub: AnthonyG05/-PowerShell-Security-Scripts

一套面向蓝队的 PowerShell 安全脚本工具集,聚焦网络连接审计、文件完整性校验与加密操作,用于辅助事件响应和日常防御。

Stars: 0 | Forks: 0

项目概述 这是一套专用的 PowerShell 脚本工具集,专为管理自动化、网络监控和加密操作而设计。开发这些实用工具旨在支持“蓝队”的防御策略和事件响应工作流程。 核心工具 ``` Network Connection Monitor: Audits active TCP/IP connections, mapping remote IP addresses to local PIDs and process names for rapid threat identification. File Integrity Checker: Utilizes SHA256 hashing algorithms to generate and verify file signatures, ensuring data remains untampered across local directories. Cryptographic Operations: Features functions for Base64 encoding/decoding and SecureString encryption to demonstrate safe data-at-rest practices. Low-Level Memory Management: Employs the Runtime.InteropServices.Marshal class for advanced decryption tasks, bypassing standard high-level limitations. ``` 技术栈 ``` Language: PowerShell Focus: Hashing (SHA256), Cryptography, Network Auditing ```
标签:AI合规, Base64编解码, DNS 反向解析, HTTP工具, IPv6, Libemu, Mr. Robot, OpenCanary, PowerShell, Runtime.InteropServices, SecureString, SHA256, TCP/IP监控, 内存管理, 加密操作, 哈希校验, 多人体追踪, 威胁识别, 密码学, 手动系统调用, 文件完整性检查, 管理自动化, 网络安全, 网络连接审计, 蓝军工具, 防御策略, 隐私保护