Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[addtool] Graphpython #1932

Open
mlcsec opened this issue Jul 25, 2024 · 1 comment
Open

[addtool] Graphpython #1932

mlcsec opened this issue Jul 25, 2024 · 1 comment
Labels
enhancement New feature or request pending

Comments

@mlcsec
Copy link

mlcsec commented Jul 25, 2024

[link]https://github.com/mlcsec/Graphpython[/link]

[tags]o365,Entra,Intune,Cloud,Red team[/tags]

[short_descr] Modular cross-platform Microsoft Graph API (Entra, o365, and Intune) enumeration and exploitation toolkit[/short_descr]

[long_descr]
Graphpython covers external reconnaissance, authentication and token manipulation, enumeration, and post-exploitation of various Microsoft services, including Entra ID (Azure AD), Office 365 (Outlook, SharePoint, OneDrive, Teams), and Intune (Endpoint Management).

The commands are categorised into the following sections:

  • Outsider - external domain reconnaissance and user enumeration
  • Authentication - authentication and token manipulation
  • Post-Auth Enumeration - Entra/o365 enumeration
  • Post-Auth Exploitation - Entra/o365 exploitation
  • Post-Auth Intune Enumeration - Intune enumeration
  • Post-Auth Intune Exploitation - Intune exploitation
  • Cleanup - removing malicious accounts/artifacts
  • Locators - identifying unknown objects and permission IDs

[/long_descr]

[image]
https://raw.githubusercontent.com/mlcsec/Graphpython/main/.github/python.png
[/image]

@gwen001
Copy link
Owner

gwen001 commented Jul 25, 2024

Issue correctly handled, tool is waiting for human validation.

@gwen001 gwen001 added enhancement New feature or request pending labels Jul 25, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request pending
Projects
None yet
Development

No branches or pull requests

2 participants