AzureCli - PowerShell

Connect:

connect-azuread

Recon:

Get Ad User:

Get AD Directory Role:

Get AD Directory Role Member (based off above ObjectId):

Get AD Group:

Get AD Group member:

Get AD Applications:

Get AD Application Owner:

PrivEsc:

Applications & Service Principle exploitation

Add Application Secret:

Authenticate as Service principle:

AZAddMembers

add target to group:

AzureADGroupOwner

Virtual Machine:

List VMs:

Run command:

Privesc:

Azure shell:

history enumeration:

Last updated