AnthonyG05/-PowerShell-Security-Scripts
GitHub: AnthonyG05/-PowerShell-Security-Scripts
一套面向蓝队的 PowerShell 安全脚本工具集,聚焦网络连接审计、文件完整性校验与加密操作,用于辅助事件响应和日常防御。
Stars: 0 | Forks: 0
项目概述
这是一套专用的 PowerShell 脚本工具集,专为管理自动化、网络监控和加密操作而设计。开发这些实用工具旨在支持“蓝队”的防御策略和事件响应工作流程。
核心工具
```
Network Connection Monitor:
Audits active TCP/IP connections, mapping remote IP addresses to local PIDs and process names for rapid threat identification.
File Integrity Checker:
Utilizes SHA256 hashing algorithms to generate and verify file signatures, ensuring data remains untampered across local directories.
Cryptographic Operations:
Features functions for Base64 encoding/decoding and SecureString encryption to demonstrate safe data-at-rest practices.
Low-Level Memory Management:
Employs the Runtime.InteropServices.Marshal class for advanced decryption tasks, bypassing standard high-level limitations.
```
技术栈
```
Language: PowerShell
Focus: Hashing (SHA256), Cryptography, Network Auditing
```
标签:AI合规, Base64编解码, DNS 反向解析, HTTP工具, IPv6, Libemu, Mr. Robot, OpenCanary, PowerShell, Runtime.InteropServices, SecureString, SHA256, TCP/IP监控, 内存管理, 加密操作, 哈希校验, 多人体追踪, 威胁识别, 密码学, 手动系统调用, 文件完整性检查, 管理自动化, 网络安全, 网络连接审计, 蓝军工具, 防御策略, 隐私保护