Cheatsheet

Enumerate functions

Roles that we can abuse

Unauthenticated enumeration

Authenticated enumeration

https://github.com/rootsecdev/Azure-Red-Team

Azure Tools

Azure Vulnerable labs and learning platforms

Access level required to perform security review

Token info and location

Identify Azure AD connect server

See: https://www.secwiki.cloud/azure/services/Azure_AD

For useful information