Post Exploiting Microsoft Graph With Graphrunner

Runs GraphRunner, a PowerShell post-exploitation toolset built on the Microsoft Graph API, to perform tenant recon, establish persistence (OAuth app injection, inbox rules), escalate privilege via group manipulation, and pillage mailboxes, SharePoint, and Teams data from a foothold Graph token. Use during authorized red-team engagements against Microsoft 365/Entra ID tenants once you hold a Graph token.

gabrielmoreira Updated 17 repo stars

File contents

gabrielmoreira/agent-skills-mirror/tree/main/mirrors/repos/mukul975@Anthropic-Cybersecurity-Skills/skills/post-exploiting-microsoft-graph-with-graphrunner commit 5879c664e1

Frequently asked questions

npx skillmds@latest add gabrielmoreira/post-exploiting-microsoft-graph-with-graphrunner