o365recon is a reconnaissance tool that retrieves information from Office 365 and Azure Active Directory using a valid credential. It provides a comprehensive overview of the target organization's O365 and AzureAD infrastructure, including users, groups, and permissions. The tool is designed to help security professionals and penetration testers identify potential security vulnerabilities and weaknesses in O365 and AzureAD environments. o365recon is easy to use and provides a detailed report of the retrieved information, making it a valuable asset for any security assessment or penetration testing engagement.
FEATURES
SIMILAR TOOLS
A tool that simplifies the installation of tools and configuration for Kali Linux
Inceptor is a template-driven framework for evading Anti-Virus and Endpoint Detection and Response solutions, allowing users to create custom evasion techniques and test their security controls.
A free, safe, and legal training ground for ethical hackers to test and expand their skills
A penetration testing tool that focuses on web browser exploitation
An exploitation framework for industrial security with modules for controlling PLCs and scanning devices.
A tool for working with Direct System Calls in Cobalt Strike's Beacon Object Files (BOF) for offensive security purposes.
A tool for generating .NET serialized gadgets for triggering .NET assembly load/execution.
Check if a domain is in the Alexa or Cisco top one million domain list.
Utilizing Alternate Data Streams (ADS) to bypass AppLocker default policies by loading DLL/CPL binaries.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.