Major update(v 1.2) for the Microsoft Extractor Suite

24.1.2024

De blogs zijn enkel beschikbaar in het Engels.

We have just released a major update to the Microsoft Extractor Suite.

โ€

๐Ÿ”ง Installation
๐˜๐˜ฏ๐˜ด๐˜ต๐˜ข๐˜ญ๐˜ญ-๐˜”๐˜ฐ๐˜ฅ๐˜ถ๐˜ญ๐˜ฆ -๐˜•๐˜ข๐˜ฎ๐˜ฆ ๐˜”๐˜ช๐˜ค๐˜ณ๐˜ฐ๐˜ด๐˜ฐ๐˜ง๐˜ต-๐˜Œ๐˜น๐˜ต๐˜ณ๐˜ข๐˜ค๐˜ต๐˜ฐ๐˜ณ-๐˜š๐˜ถ๐˜ช๐˜ต๐˜ฆ

โ€

๐Ÿ“ˆ Entra ID acquisition now supports:
- Get-AdminUsers retrieve users with Administrative privileges
- Get-ConditionalAccessPolicies get all enabled CA policies
- Get-RiskyDetections
- Get-RiskyUsers
- Get-MFA, check MFA enrollment status in your tenant

๐Ÿ” Microsoft 365 forensics:
- Get- Sessions, identify sessions in the UAL can be used to detect Adversary in The Middle (AiTM) attacks
- Get-MessageIDs, can be used to find all messages accessed within a session
- Get-Email/Get-Attachment, used to retrieve emails and attachments based on InternetMessageIds

๐Ÿ“– Documentation:

https://microsoft-365-extractor-suite.readthedocs.io/en/latest/

โ€