Flangvik/TeamFiltration
TeamFiltration is a cross-platform framework for enumerating, spraying, exfiltrating, and backdooring O365 AAD accounts observed · 2026-08-28
Health v2 · maintenance only
55/100
- Activity 71
- Release rhythm 8
- Longevity 100
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.
- gap_med: n/a
- age_days: 1528
- days_rel: 510
- days_push: 177
- n_releases_24m: 1
Adoption not part of the score
1399 stars · 151 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded
TeamFiltration is a cross-platform penetration testing framework for enumerating, password spraying, exfiltrating data from, and backdooring O365/Entra ID (Azure AD) accounts. It is a C# CLI tool used internally at TrustedSec and released publicly, with precompiled binaries for Linux, Windows, and macOS.
Use cases
- enumerate valid O365 user accounts
- password spray Entra ID tenants
- exfiltrate data from compromised O365 accounts
- backdoor Azure AD accounts for persistence
- route spraying traffic through a proxy
- red team assessment of Microsoft 365 identity
When to choose
- you are an authorized red teamer or pentester targeting O365/Entra ID
- you need a single cross-platform binary with no .NET dependencies
- you want proxy support for enumeration and spraying traffic
When to avoid
- you lack explicit authorization to test the target tenant
- you need defensive monitoring rather than offensive tooling
- you rely on the removed AWS Fireprox functionality
Facets
cli-tool · maturity active
security penetration-testing osint cli security penetration-testing cloud-computing cross-platform windows cli dotnet red-team office365 entra-id password-spraying account-enumeration exfiltration backdooring csharp linux macos
1 source
- readme: https://github.com/Flangvik/TeamFiltration · fetched 2026-08-28 · 07c8271515d4
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| Flangvik/TeamFiltration | main | 55 |
For agents
markdown · JSON · MCP: product_card(name="Flangvik/TeamFiltration")
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem