awesome-repositories.com
المدونة
MCP
awesome-repositories.com

اكتشف أفضل مستودعات المصادر المفتوحة باستخدام بحث مدعوم بالذكاء الاصطناعي.

استكشفعمليات بحث منسقةبدائل مفتوحة المصدربرمجيات ذاتية الاستضافةالمدونةخريطة الموقع
المشروعخادم MCPحولكيفية ترتيب النتائجالصحافة
قانونيالخصوصيةالشروط
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
0x6d69636b avatar

0x6d69636b/windows_hardening

0
View on GitHub↗
2,631 نجوم·329 تفرعات·PowerShell·MIT·10 مشاهدات

Windows Hardening

Windows Hardening هو إطار عمل للأتمتة قائم على PowerShell مصمم لتقييم الأمان وإدارة التكوين داخل بيئات Windows. يوفر مجموعة من الأدوات الإدارية لفرض معايير الأمان القياسية في الصناعة، وتدقيق امتثال النظام، وتقليل سطح الهجوم الإجمالي للأجهزة المضيفة.

يتميز المشروع بتقديم قدرات متخصصة لإدارة التكوين على مستوى المؤسسة، بما في ذلك القدرة على تحويل نتائج الأمان إلى كائنات سياسة مجموعة قابلة للنشر. كما يدمج إدارة حالة النظام، مما يسمح للمسؤولين بالتقاط وتصدير إعدادات السجل وتكوينات النظام إلى تنسيقات قابلة للنقل لضمان نسخ احتياطية ونقاط استعادة موثوقة قبل تطبيق تدابير التقوية.

بعيداً عن التقوية الأساسية، تغطي مجموعة الأدوات نطاقاً واسعاً من عمليات الأمان مثل تصفية حركة مرور الشبكة القائمة على المضيف، وإزالة البرمجيات والخدمات الخلفية غير الضرورية، ومراقبة نشاط مستوى النظام. يسهل وضع أمان متسق عبر بيئات الشبكة من خلال مقارنة حالات النظام الحالية مقابل خطوط الأساس المحددة مسبقاً وإنشاء تقارير امتثال قابلة للتنفيذ للمعالجة.

Features

  • Windows Security Hardening - Enforces industry-standard security benchmarks and system configurations to reduce the attack surface of Windows host machines.
  • Windows Security Hardening - Applies industry-standard security benchmarks to Windows systems to reduce the attack surface and protect against unauthorized access.
  • Registry Policy Enforcements - Modifies system registry keys and security policies to enforce hardening benchmarks and reduce the attack surface.
  • PowerShell - Executes modular PowerShell scripts to perform system audits, apply security configurations, and manage background services.
  • GPO Transformation Utilities - Transforms security configuration findings into deployable group policy objects for centralized enterprise management.
  • System Configuration Backups - Captures and exports registry and system settings to create reliable restore points before applying security hardening.
  • Network Access Restrictions - Defines firewall rules to block unauthorized outbound connections and prevent malicious process migration.
  • Attack Surface Analysis - Minimizes potential entry points by removing unnecessary software and restricting network traffic.
  • Compliance Security Audits - Evaluates current system configurations against industry-standard security benchmarks and generates detailed compliance reports.
  • Security and Compliance - Provides a security assessment framework that evaluates operating system settings against hardening standards.
  • Network Traffic Filtering - Configures host-based firewall rules to restrict unauthorized outbound connections and mitigate malicious process communication.
  • System Configuration Auditing - Compares current system settings against predefined security baselines to identify compliance gaps and generate remediation reports.
  • System Configuration Snapshots - Captures system registry and configuration states into portable formats for reliable backups and restoration.
  • Backup and Recovery Utilities - Captures and restores system settings to ensure environment stability during security hardening and remediation processes.
  • Configuration Backups - Captures current system configurations into a portable format to ensure previous states can be restored easily.
  • Group Policy Management - Transforms security findings into deployable policies for centralized management across enterprise network environments.
  • Group-Wide Security Policy Configurations - Transforms security configuration findings into deployable policies to ensure consistent security settings across network machines.
  • Security Finding Converters - Transforms security finding lists into group policy objects to enable centralized management and consistent deployment.
  • Pre-installed App Removals - Removes pre-installed applications and unnecessary background services to minimize the system attack surface.
  • System Activity Monitoring - Tracks process activity and detects suspicious behavior by recording events across the operating system.

سجل النجوم

مخطط تاريخ النجوم لـ 0x6d69636b/windows_hardeningمخطط تاريخ النجوم لـ 0x6d69636b/windows_hardening

بحث بالذكاء الاصطناعي

استكشف المزيد من المستودعات الرائعة

صف ما تحتاجه بلغة بسيطة — وسيقوم الذكاء الاصطناعي بترتيب آلاف المشاريع مفتوحة المصدر المنسقة حسب الصلة.

Start searching with AI

مجموعات مختارة تضم Windows Hardening

مجموعات منسقة بعناية يظهر فيها Windows Hardening.
  • أدوات تعزيز أمان الخوادم والتدقيق الأمني

بدائل مفتوحة المصدر لـ Windows Hardening

مشاريع مفتوحة المصدر مشابهة، مرتبة حسب عدد الميزات المشتركة مع Windows Hardening.
  • builtbybel/privatezillaالصورة الرمزية لـ builtbybel

    builtbybel/privatezilla

    3,723عرض على GitHub↗

    Privatezilla is a Windows privacy hardening tool designed to audit security settings, remove pre-installed software, and block outbound telemetry data. It functions as an operating system security auditor and a telemetry blocker to restrict data transmission from third-party applications. The project provides automated utilities for removing built-in applications and cloud services. It employs firewall rules and host file restrictions to prevent unauthorized information collection and stop data transmission to external servers. The tool covers a broad range of system management capabilities,

    C#debloatpowershellprivacy
    عرض على GitHub↗3,723
  • itm4n/privesccheckالصورة الرمزية لـ itm4n

    itm4n/PrivescCheck

    3,860عرض على GitHub↗

    PrivescCheck is a PowerShell-based security auditing tool designed to scan Windows configurations for potential privilege escalation paths and local host vulnerabilities. It functions as a vulnerability assessment utility that analyzes system settings and registry configurations to identify weaknesses that could allow unauthorized administrative access. The tool automates internal security reconnaissance and post-exploitation data collection to gather environmental information. It serves as a security compliance reporter by exporting scan results into structured formats, including HTML, CSV,

    PowerShellpentest-toolpentestingprivilege-escalation
    عرض على GitHub↗3,860
  • the1812/malware-patchالصورة الرمزية لـ the1812

    the1812/Malware-Patch

    5,466عرض على GitHub↗

    Malware-Patch is a collection of administrative utilities and controllers designed to manage software permissions and prevent unauthorized privilege elevation within Windows system settings. It functions as a UAC policy configuration tool and administrative access controller that blocks specific software from gaining administrator privileges. The project employs a stateless permission management approach, meaning it enforces authorization blocks without requiring a persistent background service process. It achieves this by using digital signature filtering to match certificates of signed bina

    C#csharpmalware-protectionuac-authorization
    عرض على GitHub↗5,466
  • flick9000/winscriptالصورة الرمزية لـ flick9000

    flick9000/winscript

    2,535عرض على GitHub↗

    Winscript is a modular configuration framework designed for the administration and hardening of Windows environments. It utilizes script-based task orchestration to automate system setup, privacy enforcement, and performance tuning through direct interaction with system APIs and registry keys. The project distinguishes itself by providing a unified toolkit that combines OS deployment automation with bulk software provisioning. It generates unattended installation files to bypass hardware requirements and manual setup prompts, while simultaneously managing the silent installation of third-part

    CSSbloatwarecleanupdebloat
    عرض على GitHub↗2,535
عرض جميع البدائل الـ 30 لـ Windows Hardening→

الأسئلة الشائعة

ما هي وظيفة 0x6d69636b/windows_hardening؟

Windows Hardening هو إطار عمل للأتمتة قائم على PowerShell مصمم لتقييم الأمان وإدارة التكوين داخل بيئات Windows. يوفر مجموعة من الأدوات الإدارية لفرض معايير الأمان القياسية في الصناعة، وتدقيق امتثال النظام، وتقليل سطح الهجوم الإجمالي للأجهزة المضيفة.

ما هي الميزات الرئيسية لـ 0x6d69636b/windows_hardening؟

الميزات الرئيسية لـ 0x6d69636b/windows_hardening هي: Windows Security Hardening, Registry Policy Enforcements, PowerShell, GPO Transformation Utilities, System Configuration Backups, Network Access Restrictions, Attack Surface Analysis, Compliance Security Audits.

ما هي البدائل مفتوحة المصدر لـ 0x6d69636b/windows_hardening؟

تشمل البدائل مفتوحة المصدر لـ 0x6d69636b/windows_hardening: builtbybel/privatezilla — Privatezilla is a Windows privacy hardening tool designed to audit security settings, remove pre-installed software,… itm4n/privesccheck — PrivescCheck is a PowerShell-based security auditing tool designed to scan Windows configurations for potential… the1812/malware-patch — Malware-Patch is a collection of administrative utilities and controllers designed to manage software permissions and… flick9000/winscript — Winscript is a modular configuration framework designed for the administration and hardening of Windows environments.… pentestmonkey/windows-privesc-check — Windows-privesc-check is an automated security auditing tool designed to identify misconfigurations and… hotcakex/harden-windows-security — Harden-Windows-Security is a security hardening tool and framework designed to reduce the attack surface of the…