-
Notifications
You must be signed in to change notification settings - Fork 6
Calendar
GraphRobber accesses calendar data through the Microsoft Graph API, providing event browsing, free/busy schedule checking, and meeting room discovery.
Page: Calendar (sidebar > Services)
Browse the user's calendar with full event details:
- Subject and body -- meeting titles and descriptions (often contain credentials, VPN instructions, dial-in info)
- Attendees -- who was invited and their response status
- Online meeting URL -- Teams/Zoom links
- Location -- physical or virtual meeting location
- Recurrence -- recurring meeting patterns
- Sensitivity and importance -- flagged events
Specify a start and end date to scope the view. Events are returned in reverse chronological order with pagination (up to 100 per page, 20 pages max).
Check the availability of other users in the organization:
- Enter one or more UPNs (comma or newline separated, max 20)
- Specify a date range
- Hit Check Schedule -- returns availability view at 30-minute intervals
Each user's schedule shows busy/free/tentative/OOF blocks. Useful for:
- Identifying when executives are in meetings (social engineering timing)
- Confirming office hours and time zones
- Cross-referencing with Teams/Outlook activity
Click Find Rooms to enumerate all conference rooms registered in Exchange Online. Returns room name, email address, building, floor, and capacity.
Useful for org recon -- room naming often reveals office locations, building names, and floor layouts.
| Scope | What For |
|---|---|
Calendars.Read |
Read calendar events |
Schedule.Read.All |
Free/busy schedule check |
Place.Read.All |
Room enumeration |