APM, error tracking, and dashboards for modern web apps. Ten-minute setup, transparent flat pricing, and support from engineers who actually use the product. Learn more →
Top 23 PowerShell Security Projects
-
The issue is the update license is different than full install licenses, and the red sticker oem licenses people scam are hardware specific.
You usually must pay for windows twice (or more if you don't know) to be Pro license compliant for commercial use.
Setting a machine up for multi-boot Linux/BSD is not always a simple process with every BIOS firmware, and configuring Windows to stop automatic encryption of NTFS volumes is nontrivial. Even with an offline install for games, if the OneDrive account is ever activated... files are upped to Microsoft cloud anyway.
Thankfully, disarming Win11 TPM/Drive-boobytrap/BS-encryption/Spam is easy with Rufus, O&O ShutUp10, and Copilot removal (note undocumented AI API areas suggested RAT/snitch-ware... the final straw with Microsoft BS around here...)
https://github.com/pbatard/rufus
https://www.oo-software.com/en/shutup10
https://github.com/zoicware/RemoveWindowsAI
Yes it still supports DRM Steam games, and Win11 x4 gen4 SSDs are now about 17% faster i/o on my rig.
You know what I like about Apple OS, is you just flip around 8 options and it goes quiet.
Best of luck, ymmv =3
-
AppSignal
Monitoring that respects your time & budget. APM, error tracking, and dashboards for modern web apps. Ten-minute setup, transparent flat pricing, and support from engineers who actually use the product.
-
-
Penetration-Testing-Tools
A collection of more than 170+ tools, scripts, cheatsheets and other loots that I've developed over years for Red Teaming/Pentesting/IT Security audits purposes.
-
-
-
-
-
Kargo
Stop Scripting Promotions. Start Shipping with Kargo. Kargo automates promotion across dev, staging, and prod with approval gates and verification. Open source, built by the team behind Argo CD. Download now.
-
Windows-Optimize-Harden-Debloat
Enhance the security and privacy of your Windows 10 and Windows 11 deployments with our fully optimized, hardened, and debloated script. Adhere to industry best practices and Department of Defense STIG/SRG requirements for optimal performance and security.
-
monkey365
Monkey365 is an open-source security assessment tool for Microsoft 365, Azure, and Microsoft Entra ID. It helps security professionals identify misconfigurations, review cloud security posture, and evaluate environments against industry security best practices and compliance standards.
-
-
npm-security-best-practices
[Updated for AI 🤖] Continuous updates on how to stay safe from NPM supply chain attacks
Project mention: Shai-Hulud Returns: Over 300 NPM Packages Infected | news.ycombinator.com | 2025-11-24I compiled a list of NPM best practices one can adopt to reduce supply chain attack risks (even if there's no perfect security preventions, _always_): https://github.com/bodadotsh/npm-security-best-practices
Discussion on HN last time: https://news.ycombinator.com/item?id=45326754
-
-
-
WiFi-password-stealer
Simple Windows and Linux keystroke injection tool that exfiltrates stored WiFi data (SSID and password).
-
MAAD-AF
MAAD Attack Framework - An attack tool for simple, fast & effective security testing of M365 & Entra ID (Azure AD).
-
MrKaplan
MrKaplan is a tool aimed to help red teamers to stay hidden by clearing evidence of execution.
-
-
-
-
Standalone-Windows-Server-STIG-Script
Enhance the security and compliance of your standalone Windows servers with our STIG script, specifically designed to meet DoD STIG/SRG requirements and NSACyber guidance. Achieve ultimate Windows Server protection with our easy-to-use script.
-
configurations-and-security-hardening
Here goes settings I would prefer or suggest to harden servicers, servers, hosts, endpoints, etc.
-
Public-Scripts
PowerShell scripts for Microsoft 365, Exchange, SharePoint, Entra ID, Azure, and OSINT
-
BraveDebloater
Safety-first Windows PowerShell debloater for Brave Browser using enterprise policies, dry-run mode, backups, and restore.
Project mention: Show HN: BraveDebloater – strips Brave's bloat using official policies only | news.ycombinator.com | 2026-06-14 -
SaaSHub
SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives
PowerShell Security discussion
PowerShell Security related posts
-
my one-line PowerShell installer downloaded the script twice, and the second one was the weak spot
-
Show HN: Hounddog.ai – Ultra-Fast Code Scanner for Data Privacy
-
Private and Secure Windows
-
PowerShell evasion
-
BitLocker, TPM and Pluton | What Are They and How Do They Work
-
Clean Source principle, Azure and Privileged Access Workstations
-
Comparison of security benchmarks and dangers of following them!
-
A note from our sponsor - AppSignal
www.appsignal.com | 6 Sep 2026
Index
What are some of the best open-source Security projects in PowerShell? This list will help you:
| # | Project | Stars |
|---|---|---|
| 1 | RemoveWindowsAI | 12,964 |
| 2 | nishang | 10,003 |
| 3 | Penetration-Testing-Tools | 2,961 |
| 4 | windows_hardening | 2,652 |
| 5 | ScubaGear | 2,651 |
| 6 | HardeningKitty | 1,786 |
| 7 | OpenIntuneBaseline | 1,459 |
| 8 | Windows-Optimize-Harden-Debloat | 1,379 |
| 9 | monkey365 | 1,335 |
| 10 | PowerZure | 1,295 |
| 11 | npm-security-best-practices | 857 |
| 12 | SIEM | 730 |
| 13 | red_team_attack_lab | 596 |
| 14 | WiFi-password-stealer | 593 |
| 15 | MAAD-AF | 431 |
| 16 | MrKaplan | 271 |
| 17 | AZSentinel | 230 |
| 18 | private-secure-windows | 216 |
| 19 | Purpleteam | 203 |
| 20 | Standalone-Windows-Server-STIG-Script | 66 |
| 21 | configurations-and-security-hardening | 43 |
| 22 | Public-Scripts | 33 |
| 23 | BraveDebloater | 19 |