Skip to content

msInvader

redcloudos NEW

Simulates post-compromise M365/Entra ID adversary techniques (mailbox rules, forwarding, delegation) via Graph/EWS/REST.

msInvader screenshot

Location

/opt/detectops/attack-simulation/redcloudos/msInvader

How to run

python msInvader.py -c config.yaml

Manual step required

no pinned requirements.txt upstream — install deps yourself first, see BUILD-README.txt


Part of the Attack Simulation toolset in DetectOps.