Azure Pentest

MicroBurst, Lava, Koboko, PowerZure, Stormspotter, and BloodHound

https://kaeferjaeger.gay/arrow-up-right

Ffuf

Nabu

Amass

Gbounty bounty automation

Ddosify

Nuclei

Dradis framework report writing

Corsy cors security

https://github.com/CrowdStrike/CRTarrow-up-right

https://github.com/nccgroup/azucararrow-up-right

4:26 / 7:44

Burp Suite Bambdas

From <https://www.youtube.com/watch?v=G-EPLDXzz4k&list=PL4GgDfx_FS1vktfQ4SmH9A_8pqPF7tvcf&index=28arrow-up-right>

Cloud Security

Azure Security assessment phases

Azure components

azure ad

azure

Attack Scenarios:

- MFA bypass : token dumping : processexp64 dumps: teams : grep for jwt

- evilnginx

Inforamtion Gathering

Tenant ID

Tenant name

Authentication Type

is federation in place

domain

azure services used by target organization

email ids in use

Enum

Azure service finder : https://github.com/NetSPI/MicroBurstarrow-up-right

Email enumeration : https://github.com/LMGsec/o365creeperarrow-up-right

is azure manangin security or not ( is client on azure or not)

https://login.microsoftonline.com/getuserrealm.srf?login=username@dfwairport.com&xml=1arrow-up-right

FInding the tenant ID

https://login.microsoftonline.com/dfwairport.com/.well-known/openid-configurationarrow-up-right

https://login.microsoftonline.com/sonepar.com/.well-known/openid-configurationarrow-up-right

Recon

https://github.com/Gerenios/AADInternalsarrow-up-right

https://github.com/nsonaniya2010/SubDomainizerarrow-up-right

cloud pentest

Cloud security audit

prowler

scoutsuite

cloudsploit https://github.com/aquasecurity/cloudsploitarrow-up-right

Azure Storage:

Container

fileshare

tables

queue

https://github.com/cyberark/BlobHunterarrow-up-right

https://github.com/nccgroup/ScoutSuitearrow-up-right

https://github.com/prowler-cloud/prowlerarrow-up-right

References:

https://learn.microsoft.com/en-us/azure/security/fundamentals/log-auditarrow-up-right

https://www.getastra.com/blog/cloud/azure/azure-security-audit/arrow-up-right

https://learn.microsoft.com/en-us/azure/security/fundamentals/operational-checklistarrow-up-right

Videos

Introduction To Azure Penetration Testing by Nikhil Mittalarrow-up-right

EDITED EDITION — Getting Started in Pentesting The Cloud–Azure | Beau Bullock | 1-Hourarrow-up-right

Last updated