Skip to content
KitploitKITPLOIT
उपकरणब्लॉग
जमा करें
उपकरणब्लॉग
जमा करें

हैकिंग, पेनटेस्ट और साइबर सुरक्षा उपकरण आपके सुरक्षा शस्त्रागार के लिए!

Kitploit हैकिंग, साइबर सुरक्षा और पेंटेस्टिंग टूल्स की एक निर्देशिका है। कमजोरियों को खोजने, सिस्टम का विश्लेषण करने, परीक्षण को स्वचालित करने और अपनी सुरक्षा को मजबूत करने के लिए नवीनतम प्रोजेक्ट अपडेट खोजें।

··फ़ीड·संपर्क·गोपनीयता·© 2026 Kitploit

टूल निर्देशिका

श्रेणियाँ

सभी श्रेणियाँ देखें
Loading categories
untitledgoosetool — Untitled Goose Tool is a robust and flexible hunt and incident response tool that adds novel authentication and data gathering methods in order to run a full investigation against a customer’s Azure Active Directory (AzureAD), Azure, and M365 environments. | Kitploit
उपकरण/GitHubGitHub/cisagov/untitledgoosetool
Defensive ToolsIoT SecurityVulnerability AnalysisInformation GatheringDigital ForensicsCloud SecurityLog Analysis
GitHubcisagov/untitledgoosetool

untitledgoosetool

Untitled Goose Tool is a robust and flexible hunt and incident response tool that adds novel authentication and data gathering methods in order to run a full investigation against a customer’s Azure Active Directory (AzureAD), Azure, and M365 environments.

रिपॉजिटरी देखें
963936 महीने पहलेKitploit द्वारा समीक्षित

सबसे लोकप्रिय

सभी देखें →

हमारे समुदाय द्वारा सबसे अधिक उपयोग किए जाने वाले उपकरण खोजें।

सभी उपकरण खोजें

हमारे उपकरणों का संग्रह ब्राउज़ करें

सभी उपकरण देखें →
साझा करें

Untitled Goose Tool


हंस छूट गया है।

विषय-सूची

  • परिचय
  • आरंभ करना
    • पूर्वापेक्षाएँ
    • आवश्यकताएँ
    • स्थापना
  • उपयोग
    • Config
    • GUI
    • Auth
    • Csv
    • Honk
    • Messagetrace
    • अनुशंसित डिफ़ॉल्ट कार्यप्रवाह
    • समय सीमा के साथ UAL कॉल के लिए अनुशंसित कार्यप्रवाह
    • विचारणीय बातें
  • ज्ञात समस्याएँ
  • आभार
  • योगदान
  • लाइसेंस
  • कानूनी अस्वीकरण

परिचय

Untitled Goose Tool एक मजबूत और लचीला हंट एवं घटना प्रतिक्रिया उपकरण है, जो किसी ग्राहक के Microsoft Entra ID, Azure, और M365 वातावरण के विरुद्ध पूर्ण जाँच करने के लिए नए प्रमाणीकरण और डेटा संग्रह विधियों को जोड़ता है। Untitled Goose Tool Microsoft Defender for Endpoint (MDE) और Defender for Internet of Things (IoT) (D4IoT) से अतिरिक्त टेलीमेट्री एकत्र करता है।

यह उपकरण घटना प्रतिक्रिया टीमों की सहायता के लिए डिज़ाइन किया गया था, ताकि घटना के बाद उन वातावरणों के लिए क्लाउड आर्टिफैक्ट्स निर्यात किए जा सकें, जो लॉग को किसी Security Information and Events Management (SIEM) या लॉग हेतु अन्य दीर्घकालिक समाधान में शामिल नहीं कर रहे हैं।

Untitled Goose Tool का उपयोग कैसे करें, इस पर अधिक मार्गदर्शन के लिए कृपया देखें: Untitled Goose Tool Fact Sheet

आरंभ करना

पूर्वापेक्षाएँ

Untitled Goose Tool को Python के साथ चलाने के लिए Python >= 3.9 आवश्यक है। Python 3.12 अत्यधिक अनुशंसित है क्योंकि इससे बेहतर लॉगिंग मिलती है।

Windows मशीन पर, उपकरण चलाने से पहले आपको Microsoft Visual C++ redistributable package (14.x) स्थापित करना सुनिश्चित करना होगा।

Untitled Goose Tool को वर्चुअल वातावरण के भीतर चलाने की भी अनुशंसा की जाती है।

Mac OSX```sh

pip3 install virtualenv virtualenv -p python3 .venv source .venv/bin/activate

root@kitploit:~
#### Linux```sh
# You may need to run sudo apt-get install python3-venv first
python3 -m venv .venv
source .venv/bin/activate

विंडोज़```console

You can also use py -3 -m venv .venv

python -m venv .venv .venv\Scripts\activate

root@kitploit:~
### आवश्यकताएँ
Untitled Goose Tool को चलाने के लिए निम्नलिखित EntraID/M365 अनुमतियाँ आवश्यक हैं, और ये टूल को टेनंट तक केवल-पठन (read-only) पहुँच प्रदान करती हैं।

कृपया ध्यान दें: उपयोगकर्ता खाता केवल-क्लाउड (cloud-only) खाता होना चाहिए (ऑन-प्रिमाइस वातावरण से sync'd नहीं), यह सुनिश्चित करेगा कि टूल के लिए लॉगिन प्रक्रिया सभी वातावरणों में समान बनी रहे।

एक cloud-only उपयोगकर्ता खाता और संबद्ध EXO सेवा प्रिंसिपल, जिसमें निम्नलिखित अनुमतियाँ हों:

Exchange Online Admin Center```
- View-Only Audit Logs
- View-Only Configuration 
- View-Only Recipients
- User Options

एक service principal निम्नलिखित अनुमतियों के साथ:

API अनुमतियाँ``` Log Analytics API

  • Data.Read (Application)

Microsoft Threat Protection:

  • AdvancedHunting.Read.All (Application)

WindowsDefenderATP:

  • AdvancedQuery.Read.All (Application)
  • Alert.Read.All (Application)
  • Library.Manage (Application)
  • Machine.Read.All (Application)
  • SecurityRecommendation.Read.All (Application)
  • Software.Read.All (Application)
  • Ti.ReadWrite (Application)
  • Vulnerability.Read.All (Application)

Microsoft Graph:

  • APIConnectors.Read.All (Application)
  • AuditLog.Read.All (Application)
  • ConsentRequest.Read.All (Application)
  • Directory.Read.All (Application)
  • Domain.Read.All (Application)
  • IdentityProvider.Read.All (Application)
  • IdentityRiskEvent.Read.All (Application)
  • IdentityRiskyServicePrincipal.Read.All (Application)
  • IdentityRiskyUser.Read.All (Application)
  • MailboxSettings.Read (Application)
  • Policy.Read.All (Application)
  • Policy.Read.PermissionGrant (Application)
  • Reports.Read.All (Application)
  • RoleManagement.Read.All (Application)
  • SecurityActions.Read.All (Application)
  • SecurityAlert.Read.All (Application)
  • SecurityEvents.Read.All (Application)
  • UserAuthenticationMethod.Read.All (Application)

Office 365 Exchange Online

  • Exchange.ManageAsApp (Application)
root@kitploit:~
Azure सदस्यता IAM भूमिकाएँ```
- Reader
- Storage Blob Data Reader
- Storage Queue Data Reader

सुनिश्चित करें कि सेवा प्रिंसिपल के लिए "Allow public client flows" सक्षम है।

हमारे पास एक सेटअप पॉवरशेल स्क्रिप्ट है जो आवश्यक अनुमतियों के साथ एक सेवा प्रिंसिपल सेटअप करती है। इसके अलावा, Azure Service Principal को m365 से संबद्ध करना वर्तमान में केवल powershell के माध्यम से ही किया जा सकता है और यह m365 लॉग संग्रह के कुछ भागों के लिए आवश्यक है।

नीचे स्क्रिप्ट चलाने का एक उदाहरण दिया गया है, जो goosey conf कमांड आउटपुट करेगा जिसे आपको सही जानकारी के साथ कॉन्फ़िग फ़ाइलें बनाने के लिए चलाना होगा।```powershell PS > Write-Host "Creating a new Goose Application and Users" PS > ./Create_SP.ps1 -AppName GooseApp -Create

root@kitploit:~
इसके अतिरिक्त, जब आप इसका उपयोग समाप्त कर लें तो स्क्रिप्ट एप्लिकेशन को हटा सकती है।```powershell
PS > Write-Host "Creating a new Goose Application and Users"
PS > ./Create_SP.ps1 -AppName GooseApp -Delete

इंस्टॉल करना

इंस्टॉल करने के लिए, रिपॉज़िटरी को क्लोन करें और फिर pip install करें:

नियमित इंस्टॉल```sh

git clone https://github.com/cisagov/untitledgoosetool.git cd untitledgoosetool python3 -m pip install .

root@kitploit:~
#### Docker```sh
docker build . -t goosey
docker run -it -v $PWD:/workdir goosey goosey honk --debug

उपयोग

कॉन्फ़िग

Untitled Goose Tool को प्रमाणीकरण पैरामीटर और कॉन्फ़िगरेशन की आवश्यकता होती है। कॉन्फ़िगरेशन फ़ाइल स्वचालित रूप से बनाने के लिए, इंस्टॉलेशन के बाद निम्न चलाएँ।```sh $ goosey conf

root@kitploit:~
इस कमांड का एक संस्करण तब उत्पन्न किया जाएगा जब powershell इंस्टॉलेशन स्क्रिप्ट को सर्विस प्रिंसिपल बनाने/सेट करने के लिए चलाया जाता है। नीचे नकली पैरामीटर मानों के साथ एक उदाहरण दिया गया है।```sh
$ goosey conf --config_tenant=5fd146ad-8b31-4afa-a72f-6f71df5c7173 --config_subscriptionid=all --auth_appid=24fd6377-79e0-445d-838b-3eaa60d3ca21 

इसके बाद, .auth, .conf, .auth_d4iot, और .d4iot_conf फ़ाइलें आपकी वर्तमान निर्देशिका में रखी जानी चाहिए। ये फ़ाइलें Untitled Goose Tool द्वारा उपयोग की जाती हैं। जब तक कि इसे उपरोक्त पैरामीटरों के साथ उत्पन्न नहीं किया गया हो, आपको शीर्ष अनुभाग [auth] को भरना चाहिए ताकि Untitled Goose Tool उपयुक्त संसाधनों में सही ढंग से प्रमाणीकरण कर सके। हालाँकि, यदि आप अपनी साख को किसी फ़ाइल में दर्ज करने में सहज नहीं हैं, तो आप .auth और/या .auth_d4iot को हटाने का विकल्प चुन सकते हैं और टूल द्वारा कंसोल के माध्यम से साख के लिए संकेत दिए जा सकते हैं।

न्यूनतम प्रमाणीकरण इस प्रकार दिखता है:``` [auth]

The username of your account. ex: [email protected]

username=

The password of your account. ex: AAD_password

password=

The application ID of your service principal

appid=

The client secret value of your service principal (not the secret ID)

clientsecret=

root@kitploit:~
न्यूनतम कॉन्फ़िग इस प्रकार दिखता है:```
[config]
# The tenant ID of your AAD tenant
tenant=
# If you have a GCC High tenant
us_government=False
# If you have a GCC tenant with MDE
mde_gcc=False
# If you have a GCC High tenant with MDE
mde_gcc_high=False
# If your M365 tenant is a government tenant
exo_us_government=False
# If you want to check all of your Azure subscriptions, set this to All, otherwise enter your Azure subscription ID. For multiple IDs, separate it with commas, no spaces
subscriptionid=All

[filters]
# Format should be YYYY-MM-DD. If not set will default to the earliest date for log retention
date_start=
# Format should be YYYY-MM-DD. Will default to the present day
date_end=

[variables]
# Threshold used for ual API requests. Specifies the maximum results pulled per session. Can be between 100 - 50000. The api is optimized to return results faster the larger the threshold, but the whole session has to be repeated if an error occurs as the results are not returned sorted. We recommend 5000 as the threshold, but this can be toggled with
ual_threshold=5000
# Maximum number of ual coroutines/tasks to have running asynchronously. Minimum value is 1.
max_ual_tasks=5
# Start date for an extra time frame for ual to search. Reason for this is because ual takes the longest to pull and while you don't want the oldest data to roll off, you may want to look at another timeframe and do not want to wait for ual to get there and pull the logs. Format should be YYY-MM-DD
ual_extra_start=
# End date for an extra time frame for ual to search. Reason for this is because ual takes the longest to pull and while you don't want the oldest data to roll off, you may want to look at another timeframe and do not want to wait for ual to get there and pull the logs. Format should be YYY-MM-DD
ual_extra_end=
# Threshold for how many logs to pull per query. Usually want to try to max this out as KQL queries are rate limited.
mde_threshold=10000
# can be either 'table' or 'machine'. 'table' will pull directly from the mde tables without filtering. While 'machine' will filter by 'machine' with large tenants 'machine' will likely be prefered as time bounding on the entire table will likely cause issues.
mde_query_mode=table

[azure]
# Dumps activity log from azure
activity_log=False
# Returns all azure subscriptions
all_azure_subscriptions=False
# Dump insights bastion audit logs
bastion_logs=False
# Dump Azure configuration information
configs=False
# Dump D4IOT portal configs
d4iot_portal_configs=False
# Dump D4IOT portal pcaps from alerts
d4iot_portal_pcap=False
# Dump insights audit events for key_vault
key_vault_log=False
# Dump insights network security group flow events
nsg_flow_logs=False

[entraid]
# Dumps Entra ID Audit logs
entraid_audit=False
# Dumps Entra ID provisioning logs
entraid_provisioning=False
# Dumps Entra ID configuration files
configs=False
# Dumps risk detections from identity protection. Requires a minimum of Microsoft Entra ID P1 license and Microsoft Entra Workload ID premium license for full results.
risk_detections=False
# Dumps risky users and service principal information. Requires a minimum of Microsoft Entra ID P2 license and Microsoft Entra Workload ID premium license for full results.
risky_objects=False
# Dump security actions, alerts, and scores
security=False
# Dump interactive (adfs) sign in logs
signins_adfs=False
# Dump managed identity (msi) sign in logs
signins_msi=False
# Dump non-interactive (rt) sign in logs
signins_rt=False
# Dump service principal (sp) signin logs
signins_sp=False

[m365]
# Get Exchange discovery information
ediscovery_info=False
# Get all of the applications installed for the organization
exo_addins=False
# Get EXO config information
exo_config_info=False
# Dumps Exchange Online Role Group and Role Group Members information.
exo_groups=False
# Get all the messageRule objects defined for all users' inboxes
exo_inboxrules=False
# Dumps Exchange Online Mailbox Information
exo_mailbox=False
# Get information on m365 mobile devices
exo_mobile_devices=False
# Dumps UAL for last year using Search-UnifiedAuditLog api. Previous ual api is currently deprecated.
ual=False

[mde]
# Dumps the results from incidents and alerts.
advanced_hunting_alerts_incidents=False
# Dumps the results from advanced hunting queries.
advanced_hunting_query=False
# Dumps the results from advanced hunting API queries.
advanced_identity_hunting_query=False
# Dump alerts
alerts=False
# Dump indicators
indicators=False
# Dump investigations
investigations=False
# Dump library files
library_files=False
# Dump known machine vulnerabilities
machine_vulns=False
# Dump machines with mde
machines=False
# Dump mde recommendations
recommendations=False
# Dump known installed software
software=False

D4IoT का अति आधारभूत auth इस प्रकार दिखता है:``` [auth]

Username for your D4IoT sensor login page

username=

Password for your D4IoT sensor login page

password=

Enter your D4IoT sensor API token

sensor_token=

Enter your D4IoT management console API token

mgmt_token=

root@kitploit:~
D4IoT कॉन्फ़िग इस प्रकार दिखता है:```
[config]
# Enter your D4IoT sensor IP
d4iot_sensor_ip=
# Enter your D4IoT management console IP
d4iot_mgmt_ip=

[d4iot]
# Dump management alerts
mgmt_alerts=False
# Dump management devices
mgmt_devices=False
# Dump management sensor pcap captured
mgmt_pcap=False
# Dump management sensor information
mgmt_sensor_info=False
# Dump sensor alerts
sensor_alerts=False
# Collect all device connections
sensor_device_connections=False
# Dummp sensor device known cves
sensor_device_cves=False
# Dump sensor device known vulnerabilities
sensor_device_vuln=False
# Dump sensor devices
sensor_devices=False
# Dump sensor events
sensor_events=False
# Dump sensor operation vulnerabilities
sensor_operational_vuln=False
# Dump sensor pcap
sensor_pcap=False
# Dump sensor security vulnerabilities
sensor_security_vuln=False

विशिष्ट pulls को सक्षम करने के लिए, आप False की घटनाओं को True में बदल सकते हैं (केस-असंवेदनशील)।

प्रमाणीकरण```sh

$ goosey auth --help NAME goosey auth - Untitled Goose Tool Authentication

SYNOPSIS goosey auth

DESCRIPTION Untitled Goose Tool Authentication

FLAGS --authfile=AUTHFILE Default: '.ugt_auth' File to store the authentication tokens and cookies --d4iot_authfile=D4IOT_AUTHFILE Default: '.d4iot_auth' File to store the authentication cookies for D4IoT -c, --config=CONFIG Default: '.conf' Path to config file --auth=AUTH Default: '.auth' File to store the credentials used for authentication --d4iot_auth=D4IOT_AUTH Default: '.auth_d4iot' File to store the D4IoT credentials used for authentication --d4iot_config=D4IOT_CONFIG Default: '.d4iot_conf' -r, --revoke=REVOKE Default: False Revoke sessions for user with authentication tokens and cookies --interactive=INTERACTIVE Default: False Interactive mode for Selenium. Default to headless --debug=DEBUG Default: False Enable debug logging --d4iot=D4IOT Default: False Run the authentication portion for d4iot --insecure=INSECURE Default: False Disable secure authentication handling (file encryption) -u, --user_auth=USER_AUTH Default: False Authenticate with the user credentials and collect the session tokens

root@kitploit:~
डिफ़ॉल्ट के साथ चलाएँ। डिफ़ॉल्ट रूप से यह क्रेडेंशियल/टोकन को प्रॉम्प्ट किए गए पासवर्ड से एन्क्रिप्ट करेगा। यदि कॉन्फ़िग में फ़ील्ड परिभाषित नहीं हैं तो यह उनके लिए भी प्रॉम्प्ट करेगा:```sh
$ goosey auth

डीबग और असुरक्षित प्रमाणीकरण हैंडलिंग सक्षम के साथ चलाएँ:```sh $ goosey auth --debug --insecure

root@kitploit:~
### Csv```sh
$ goosey csv --help
NAME
    goosey csv - Create csv files mapping GUIDs to text

SYNOPSIS
    goosey csv <flags>

DESCRIPTION
    Create csv files mapping GUIDs to text

FLAGS
    -o, --output_dir=OUTPUT_DIR
        Default: 'output/entraid/'
        The directory where the goose files are located
    -r, --result_dir=RESULT_DIR
        Default: 'output/csvs/'
        Directory for storing the results
    -d, --debug=DEBUG
        Default: False
        Enable debug logging

डिफ़ॉल्ट के साथ चलाएँ:```sh $ goosey csv

root@kitploit:~
### Honk```sh
$ goosey honk --help
NAME
    goosey honk - Untitled Goose Tool Information Gathering

SYNOPSIS
    goosey honk <flags>

DESCRIPTION
    Untitled Goose Tool Information Gathering

FLAGS
    --authfile=AUTHFILE
        Default: '.ugt_auth'
        File to store the authentication tokens and cookies
    -c, --config=CONFIG
        Default: '.conf'
        Path to config file
    --auth=AUTH
        Default: '.auth'
        File to store the credentials used for authentication
    -o, --output_dir=OUTPUT_DIR
        Default: 'output'
        Directory for storing the results
    -r, --reports_dir=REPORTS_DIR
        Default: 'reports'
        Directory for storing debugging/informational logs
    --debug=DEBUG
        Default: False
        Enable debug logging
    --dry_run=DRY_RUN
        Default: False
        Dry run (do not do any API calls)
    --azure=AZURE
        Default: False
        Set all of the Azure calls to true
    --entraid=ENTRAID
        Default: False
        Set all of the Entra ID calls to true
    --m365=M365
        Default: False
        Set all of the M365 calls to true
    --mde=MDE
        Default: False
        Set all of the MDE calls to true

डिफ़ॉल्ट विकल्पों के साथ चलाएँ:```sh $ goosey honk

root@kitploit:~
डीबग लॉगिंग सक्षम करके चलाएँ, निर्देशिका `my_outputs` में आउटपुट करें, और सभी Azure कॉल सक्षम करें:```sh
$ goosey honk --debug --output-dir my_outputs --azure

Autohonk```sh

$ goosey autohonk --help NAME goosey autohonk - Untitled Goose Tool Information Gathering. With auto authentication! This will never stop until you tell it to.

SYNOPSIS goosey autohonk

DESCRIPTION Untitled Goose Tool Information Gathering. With auto authentication! This will never stop until you tell it to.

FLAGS --authfile=AUTHFILE Default: '.ugt_auth' File to store the authentication tokens and cookies -c, --config=CONFIG Default: '.conf' Path to config file --auth=AUTH Default: '.auth' File to store the credentials used for authentication -o, --output_dir=OUTPUT_DIR Default: 'output' Directory for storing the results -r, --reports_dir=REPORTS_DIR Default: 'reports' Directory for storing debugging/informational logs -d, --debug=DEBUG Default: False Enable debug logging --azure=AZURE Default: False Set all of the Azure calls to true --entraid=ENTRAID Default: False Set all of the Entra ID calls to true --m365=M365 Default: False Set all of the M365 calls to true --mde=MDE Default: False Set all of the MDE calls to true -i, --insecure=INSECURE Default: False Disable secure authentication handling (file encryption)

root@kitploit:~
### अनुशंसित डिफ़ॉल्ट कार्यप्रवाह

1. टूल इंस्टॉल करें `pip install .`
2. (वैकल्पिक) अपने टेनेंट के लिए सेवा प्रिंसिपल सेटअप करने हेतु [setup powershell script](https://github.com/cisagov/untitledgoosetool/blob/HEAD/scripts/Create_SP.ps1) चलाएँ
3. आउटपुट हुआ `goosey conf` कमांड उपयोग करें। या इसे बिना किसी पैरामीटर के चलाएँ
4. अपनी साख (credentials) के साथ .auth फ़ाइल भरें (यदि आपने पॉवरशेल स्क्रिप्ट का आउटपुट उपयोग नहीं किया है)
5. कॉन्फ़िगरेशन जानकारी भरें और .conf फ़ाइल में वांछित कॉल को `True` पर सेट करें।
6. वांछित पैरामीटर के साथ `goosey auth` चलाएँ।
7. वांछित पैरामीटर के साथ `goosey honk` चलाएँ।
8. चरण 6-7 के बजाय वांछित पैरामीटर के साथ `goosey autohonk` चलाएँ

### UAL कॉल के लिए अनुशंसित कार्यप्रवाह

1. उपरोक्त चरण 1-4
2. .conf फ़ाइल खोलें और `m365` अनुभाग के अंतर्गत `ual` को `True` पर सेट करें।
3. वांछित पैरामीटर के साथ `goosey auth` चलाएँ।
4. वांछित पैरामीटर के साथ `goosey honk` चलाएँ।
5. चरण 3-4 के बजाय वांछित पैरामीटर के साथ `goosey autohonk` चलाएँ

### विचारणीय बातें

1. हम पहले [setup powershell script](https://github.com/cisagov/untitledgoosetool/blob/HEAD/scripts/Create_SP.ps1) चलाने या .conf भरने की अनुशंसा करते हैं
2. .auth और/या .auth_d4iot भरना अब वैकल्पिक है।
3. `goosey honk` या `goosey d4iot` चलाने से पहले हमेशा `goosey auth` चलाएँ। `goosey autohonk` अपने आप प्रमाणीकरण कर लेगा।

### विशेष उपयोग के मामले

#### प्रॉक्सी के पीछे

यह टूल प्रॉक्सी के पीछे काम करना चाहिए। जब तक क्ली (cli) के लिए उपयुक्त पर्यावरण चर सेट हैं```
https_proxy=<proxy_url>
http_proxy=<proxy_url>

ज्ञात समस्याएँ

  1. पासवर्ड में % होना:

    समाधान: सुनिश्चित करें कि पासवर्ड में % को %% से एस्केप करें।

  2. Mac पर pip install . करने का प्रयास करते समय त्रुटि:

    root@kitploit:~
    ModuleNotFoundError: No module named 'certifi'
    

    समाधान: अपने एप्लिकेशन फ़ोल्डर में जाएं, अपने python संस्करण फ़ोल्डर का पता लगाएं, और प्रमाणपत्र स्थापित करने के लिए python फ़ोल्डर के अंदर "Install Certificates.command" फ़ाइल पर डबल क्लिक करें।

  3. Untitled Goose Tool Exchange Online इनबॉक्स नियमों और Exchange Online मेलबॉक्स अनुमतियों के लिए दो परिणाम क्यों लौटाता है?

    समाधान: API और PowerShell दोनों कॉल मजबूत हैं और अलग-अलग जानकारी दिखाते हैं, इसलिए हमने दोनों को रखने का निर्णय लिया।

  4. कुछ Azure Security Center कॉल चलाने के बाद त्रुटि:

    Azure अनुपालन परिणाम:

    root@kitploit:~
    Error: (MissingSubscription) The request did not have a subscription or a valid tenant level resource provider.
    Code: MissingSubscription
    Message: The request did not have a subscription or a valid tenant level resource provider.
    

    Azure Information Protection नीतियाँ:

    root@kitploit:~
    Error: Operation returned an invalid status 'Not Found'
    

    Azure आकलन:

    root@kitploit:~
    Discriminator source is absent or null, use base class ResourceDetails.
    

आभार

  • Claire Casalnova
  • Jordan Eberst
  • Nicholas Kantor
  • Wellington Lee
  • Victoria Wallace

योगदान

हम योगदान का स्वागत करते हैं! विवरण के लिए कृपया यहाँ देखें।

लाइसेंस

यह प्रोजेक्ट विश्वव्यापी सार्वजनिक डोमेन में है।

यह प्रोजेक्ट संयुक्त राज्य अमेरिका में सार्वजनिक डोमेन में है, और कार्य में कॉपीराइट और संबंधित अधिकार CC0 1.0 Universal public domain dedication के माध्यम से विश्वव्यापी रूप से समाप्त कर दिए गए हैं।

इस प्रोजेक्ट के सभी योगदान CC0 समर्पण के तहत जारी किए जाएंगे। पुल अनुरोध सबमिट करके, आप कॉपीराइट हित की इस छूट का पालन करने के लिए सहमत हो रहे हैं।

कानूनी अस्वीकरण

सूचना

यह सॉफ़्टवेयर पैकेज (“सॉफ़्टवेयर” या “कोड”) संयुक्त राज्य सरकार द्वारा बनाया गया था और संयुक्त राज्य अमेरिका के भीतर कॉपीराइट के अधीन नहीं है। अन्य सभी अधिकार सुरक्षित हैं। आप कोड का उपयोग, संशोधन या किसी भी तरह से पुनर्वितरण कर सकते हैं। हालाँकि, आप बाद में वितरित किए गए कोड पर कॉपीराइट नहीं कर सकते। संयुक्त राज्य सरकार आपके किए गए परिवर्तनों पर कॉपीराइट का कोई दावा नहीं करती है, और न ही वह सॉफ़्टवेयर में वास्तविक परिवर्तनों के आपके वितरण को प्रतिबंधित करेगी। यदि आप कोड को अपडेट या पुनर्वितरित करने का निर्णय लेते हैं, तो कृपया इस सूचना को कोड के साथ शामिल करें। जहाँ प्रासंगिक हो, हम अनुरोध करते हैं कि आप Cybersecurity and Infrastructure Security Agency को निम्नलिखित कथन के साथ श्रेय दें: “Original code developed by the Cybersecurity and Infrastructure Security Agency (CISA), U.S. Department of Homeland Security.”

इस सॉफ़्टवेयर का उपयोग अपने जोखिम पर करें। यह सॉफ़्टवेयर किसी भी वारंटी के साथ नहीं आता है, न तो स्पष्ट और न ही निहित। संयुक्त राज्य सरकार इस सॉफ़्टवेयर या इसके व्युत्पन्नों के उपयोग या दुरुपयोग के लिए कोई दायित्व नहीं मानती है।

यह सॉफ़्टवेयर “जैसा है” (“AS-IS”) पेश किया गया है। संयुक्त राज्य सरकार आपके अनुरोध पर इस सॉफ़्टवेयर को स्थापित, हटाएगी, संचालित या समर्थन नहीं करेगी। यदि आप सुनिश्चित नहीं हैं कि यह सॉफ़्टवेयर आपके सिस्टम के साथ कैसे इंटरैक्ट करेगा, तो इसका उपयोग न करें।

टूल डाउनलोड करें

Azure उप-आकलन:

root@kitploit:~
Subtype value GeneralVulnerability has no mapping, use base class AdditionalData.
Subtype value SqlVirtualMachineVulnerability has no mapping, use base class AdditionalData.

समाधान: ये संदेश समस्याएँ नहीं हैं। Azure compliance result कॉल फिर भी पूरा हो जाएगा। Azure information protection policy कॉल कोई गंभीर त्रुटि नहीं है। Azure assessments कॉल कंसोल को एक-पंक्ति की चेतावनी से भर देता है: "Discriminator source is absent or null, use base class ResourceDetails" और बिना किसी समस्या के पूरा हो जाएगा (कंसोल स्पैम के अलावा)। Azure subassessments कॉल कंसोल को एक-पंक्ति की चेतावनी से भर देता है: "Subtype value GeneralVulnerability has no mapping, use base class AdditionalData." या "Subtype value SqlVirtualMachineVulnerability has no mapping, use base class AdditionalData." और बिना किसी समस्या के पूरा हो जाएगा (कंसोल स्पैम के अलावा)।

  • goosey honk के दौरान अत्यधिक संख्या में 429 त्रुटियाँ

    समाधान: Untitled Goose Tool जल्दी ही किसी टेनेंट की Graph API सीमाओं का सामना करेगा; यह एक सीमा है जो Microsoft के Graph API कॉल पर है।