
CredSpy
Entra ID user enumeration and auth method discovery via the public GetCredentialType API

Entra ID user enumeration and auth method discovery via the public GetCredentialType API


A lightweight PowerShell tool for assessing the security posture of Microsoft Entra ID environments. It helps identify privileged objects, risky…

Azure RedOps is a offensive security toolkit for assessing the security posture of Microsoft Entra ID

An S3 account ID enumeration and bucket discovery tool

S3 Account Search

AES-256 file and directory encryption tool with automatic upload to Anonfiles cloud storage, requiring a download ID for decryption and retrieval.

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

PowerShell-based security assessment framework for Microsoft 365, Azure, and Entra ID. Scans for misconfigurations, CIS benchmark compliance, and…

Serverless AITM Simulation Framework for Entra ID and M365

Rogue device enrollment tool for Entra ID and Intune MDM. Automates device join, token acquisition, MDM enrollment, and OMA-DM checkin to extract…

A deliberately vulnerable Microsoft Entra ID environment. Learn identity security through hands-on, realistic attack challenges.

Entra ID Password Protection Banned Password Lists

MAAD Attack Framework - An attack tool for simple, fast & effective security testing of M365 & Entra ID (Azure AD).

Microsoft Entra ID (Azure AD) Unauthenticated Enumeration

Master the art of cloud exploitation. A specialized resource for offensive security researchers and red teamers focused on weaponizing…

Bash and PowerShell scripts for Azure security assessments, covering IAM privilege escalation, container registry exploitation, Key Vault exposure,…

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can…