msgraph
Audited by Socket on Jul 31, 2026
1 alert found:
SecurityThe fragment indicates a Microsoft 365/Graph automation component capable of extensive tenant reconnaissance (directory roles, Conditional Access/auth policies, Intune device compliance, SharePoint discovery, license/organization details, and application registrations with credential-related fields) plus two materially sensitive actions: reading unread mailbox metadata and sending email as the signed-in user. The artifact appears packed/corrupted, preventing confirmation of downstream data handling and safety controls. No explicit external exfiltration/persistence or OS-level malware behavior is visible in this snippet, but the combination of high-privilege data access and user-context email sending makes it potentially dangerous if distributed as a library and invoked without strict least-privilege and auditing safeguards.