Windows security - PSJoshi/Notes GitHub Wiki

Windows API call monitoring

Disable Windows telemetry

Disable ipv6 on Windows

Command line logging

To enable the Audit Process Creation policy, edit the following group policy: Policy location: Computer Configuration > Policies > Windows Settings > Security Settings > Advanced Audit Configuration > Detailed Tracking Policy Name: Audit Process Creation

Monitoring of Windows logs