
CloudSec
Master the art of cloud exploitation. A specialized resource for offensive security researchers and red teamers focused on weaponizing…

Master the art of cloud exploitation. A specialized resource for offensive security researchers and red teamers focused on weaponizing…

BadZure automates the deployment of intentionally misconfigured Entra ID tenants and Azure subscriptions, populating them with diverse entities and…

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

A lightweight PowerShell tool for assessing the security posture of Microsoft Entra ID environments. It helps identify privileged objects, risky…

CVE-2026-69836 — Unauthenticated RCE via Entra ID deserialization

Detects unauthenticated MLflow webhook SSRF (CVE-2026-64849) that accesses internal or cloud metadata services and leaks response details via…


PowerShell-based security assessment framework for Microsoft 365, Azure, and Entra ID. Scans for misconfigurations, CIS benchmark compliance, and…

Read-only Entra ID app-credential assessment: enumerates Graph permissions, Azure RBAC, and reachable cloud data, then maps findings to…

Bash and PowerShell scripts for Azure security assessments, covering IAM privilege escalation, container registry exploitation, Key Vault exposure,…

Entra ID user enumeration and auth method discovery via the public GetCredentialType API

Azure RedOps is a offensive security toolkit for assessing the security posture of Microsoft Entra ID

Terraform module to manage AWS Security Groups. Currently, the ingress and egress rules support IPv4, IPv6, and Security Group ID inputs.

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can…

DaemonSet с реализацией временной меры для митигации уязвимости Copy Fail (CVE-2026-31431)

A deliberately vulnerable Microsoft Entra ID environment. Learn identity security through hands-on, realistic attack challenges.

CVE-2026-33340: Critical SSRF in lollms-webui /api/proxy - Unauthenticated arbitrary request forgery (CVSS 9.1)

Rogue device enrollment tool for Entra ID and Intune MDM. Automates device join, token acquisition, MDM enrollment, and OMA-DM checkin to extract…