clong / DetectionLab

Automate the creation of a lab environment complete with security tooling and logging best practices
MIT License
4.59k stars 979 forks source link

windows - GPO to disable Windows Defender doesn't work #854

Open kiyori-lw opened 1 year ago

kiyori-lw commented 1 year ago

Please verify that you are building from an updated Master branch before filing an issue.

Description of the issue:

Windows GPOs are not applying "Disable Windows Defender" to Win10

win10_gpo dc_gpo

kiyori-lw commented 1 year ago

i think that fixing this issue might also fix "win10 - redteam tools not installed #850"