M365_Groups_Enum is the all_groups.py
script allows to enumerate all Microsoft 365 Groups in a Azure AD tenant with their metadata:
All of this, even for private Groups! Read more about this on my blog article “Risks of Microsoft Teams and Microsoft 365 Groups”
The reporting.py
script will take the JSON output from all_groups.py
and generates a CSV files allowing to quickly identify sensitive private or public groups.
Installation
pip install -r requirements.txt
Usage
You will need a valid account on the tenant. Different authentication methods are supported:
python all_groups.py -u myuser@example.onmicrosoft.com -p MyPassw0rd
python all_groups.py –device-code
Other methods are also offered. You can read the ROADTools documentation or run the script without any argument to get help.
python all_groups.py
That’s all, you don’t need more options! The script output will be in all_groups.json
in the current directory.
Then, if you want a nicer and more concise output from this JSON, use reporting.py
to transform it:
python reporting.py
It automatically takes all_groups.json
in the current directory, and outputs to all_groups.csv
in the same directory.
shadow-rs is a Windows kernel rootkit written in Rust, demonstrating advanced techniques for kernel manipulation…
Extract and execute a PE embedded within a PNG file using an LNK file. The…
Embark on the journey of becoming a certified Red Team professional with our definitive guide.…
This repository contains proof of concept exploits for CVE-2024-5836 and CVE-2024-6778, which are vulnerabilities within…
This took me like 4 days (+2 days for an update), but I got it…
MaLDAPtive is a framework for LDAP SearchFilter parsing, obfuscation, deobfuscation and detection. Its foundation is…