LEARNING TOPIC
Windows security
Understand the built-in controls on your PC.
A practical Windows 11 security checklist
Check the built-in protections first and record what is actually enabled.
Check Microsoft Defender protection status with PowerShell
Inspect real-time protection, signatures and operating mode without changing settings.
Run and verify a Microsoft Defender scan
Choose quick, full or targeted scanning and inspect the result after it completes.
Investigate Windows failed sign-ins with Event 4625
Find the failed account, logon type and source without treating every failure as an attack.
Check Windows Firewall profiles and rules
Confirm the active profile and inspect rules before changing or disabling anything.
Find which Windows process owns a network connection
Use built-in PowerShell to connect an established TCP session to its process.
Review Windows startup entries with free Autoruns
Find automatic launch points and disable a questionable entry reversibly before deleting it.
Check BitLocker status and your recovery-key plan
Confirm which volumes are encrypted before changing firmware, TPM or boot settings.
Check SMBv1 before removing the legacy Windows feature
Identify dependency risk, remove SMBv1 where safe and keep modern file sharing working.
Verify a download with SHA-256 in PowerShell
Compare your file with a checksum from the genuine publisher, without running it.