Windows Event Log Tampering: What Admins Should Defend Against
Defensive notes on Windows event log tampering, audit risk, detection signals, and practical controls for administrators.
Defensive notes on Windows event log tampering, audit risk, detection signals, and practical controls for administrators.
Practical logging patterns for PowerShell scripts that run unattended in scheduled tasks, servers, and admin automation.
What administrators can recover after Windows event logs are cleared, and how to prevent local log loss with forwarding, exports, and central collection.
How to handle PowerShell errors with try, catch, and finally while writing error messages to both the console and a log file.
How to use PowerShell to discover Windows PCs, query installed applications remotely, and export a software inventory report.
How to choose between WinRM and SSH for PowerShell remoting on Windows, Linux, and mixed environments.
How to list and remove Windows taskbar pinned applications with PowerShell and Shell.Application.