trustedsec / CS-Situational-Awareness-BOF

Situational Awareness commands implemented using Beacon Object Files
GNU General Public License v2.0
1.26k stars 218 forks source link

* Add ACL collection capabilities #72

Closed coffeegist closed 2 years ago

coffeegist commented 2 years ago

Add a way to handle the nTSecurityDescriptor and schemaIDGuid fields by base64'ing the output so that it can be ingested by tools such as https://github.com/fortalice/bofhound

Cheers on a great tool, and thanks for releasing. If there's anything we can do to help on this front let us know

coffeegist commented 2 years ago

Ah yes, when I originally started down this road I set this aside with most of these thoughts in mind and forgot to circle back on them. Let me put in a bit more :D Thanks for the review

freefirex commented 2 years ago

just wanted to follow up and ask if you had any ETA on making the requested changes so we could get this merged?

freefirex commented 2 years ago

I'm closing this out since I haven't heard back. you're welcome to re-open the pull request after changes have been made

coffeegist commented 2 years ago

Sorry for the delay, but I had a bit of spare time this week and made some progress on some of the requested changes @freefirex, feel free to reopen if appropriate