Repository navigation
This release is an important milestone for the project and includes a large update to Microsoft Entra ID coverage, a new dedicated Entra ID ruleset, improvements to the internal project structure and CI/CD workflows, and a number of fixes and internal changes.
🆕 Microsoft Entra ID Ruleset
This release introduces a dedicated Microsoft Entra ID ruleset, maintained independently from the Azure and Microsoft 365 CIS benchmarks.
More than 100 security checks are now available for Microsoft Entra ID, covering areas such as:
- App Registrations
- Conditional Access Policies
- Enterprise Applications
- Role Assignments
- Privileged Access Configurations
- Identity Security Controls
The new ruleset can be selected with the RuleSet parameter, in the same way as the existing Azure and Microsoft 365 rulesets.
Example:
$p = @{
IncludeEntraId = $true
ExportTo = @("HTML")
RuleSet = "/path_to_monkey365/rules/rulesets/monkey_entra_0.1.json"
}
Invoke-Monkey365 @p📋 Rules & Collectors
Microsoft Entra ID coverage has been extensively reviewed for this release.
- All existing Entra ID rules have been rewritten
- More than 100 Entra ID rules are now available
- Rules have been reviewed for consistency and alignment with current security best practices
- A dedicated Microsoft Entra ID ruleset is now included
To list the available Microsoft Entra ID rules:
Invoke-Monkey365 -IncludeEntraId -ListRuleTo list only the rules included in a specific ruleset:
Invoke-Monkey365 `
-IncludeEntraId `
-RuleSet /path_to_monkey365/rules/rulesets/monkey_entra_0.1.json `
-ListRule🛠️ Internal Changes
Several internal functions have been updated as part of this release.
- Updated internal functions to support new Microsoft Graph endpoints
- Improved exception handling in several internal functions
- Additional Pester tests and improved test coverage for core modules
- Repository structure reorganized to better separate the PowerShell module from documentation, tests, tooling, and other repository resources
- CI/CD workflows reviewed and updated
Related issues:
- [#188 - Improve Pester test coverage for core modules](#188)
- [#181 - Reorganize repository structure to isolate the PowerShell module](#181)
- [#153 - Improve CI/CD Pipeline](#153)
Documentation
For installation instructions, usage examples, architecture details, supported commands, and the full project documentation, visit:
- Documentation: https://silverhack.github.io/monkey365/
- Project repository: https://github.com/silverhack/monkey365
- Previous release: https://github.com/silverhack/monkey365/releases/tag/v0.99
Feedback & Contributions
As always, feedback and bug reports are welcome.
If you find an issue with the new Entra ID rules, collectors, or ruleset, please open an issue in the Monkey365 repository.
Contributions are also welcome, especially around:
- New security checks
- Rule improvements
- Collector coverage
- Bug fixes
- Documentation
Thanks to everyone who has tested Monkey365, reported issues, contributed code, or provided feedback along the way.
Full Changelog: v0.99...v1.0.0