AaronLocker
AaronLocker copied to clipboard
Robust and practical application control for Windows
I've found an Excel Macro which can pull VirusTotal malicious data into the aaron Workbook results, but it doesn't accept Hash from the workbook. I believe it's Microsoft Authenticode Hash...
Running Create-Policies.ps1 triggers SentinelOne as malicious. Powershell is terminated and Accesschk.exe is quarantined. Alert Name: Shadow copy Deletion detected Severity: High Notable Events and MITRE ATT&K ID's (appears to be...
Haven't seen a mention of this anywhere. Would be great for AaronLocker to be updated, to support PowerShell 7 / Windows 11. Currently, there are a couple of points. -...