azure-ad
2 resources across 1 kinds
Tools
- Open ↗GraphRunneractivehigh-riskdual-use
A PowerShell post-exploitation toolset for interacting with the Microsoft Graph API after obtaining authenticated access to an Azure AD / M365 account. Provides reconnaissance, persistence, and pillaging modules: email/SharePoint/OneDrive/Teams search and export, malicious app deployment, consent-grant OAuth attacks, security-group cloning, and token refresh, with a browser-based GUI and no third-party dependencies.
- Open ↗ROADtoolsactive
A Python framework for exploring and attacking Azure AD / Entra ID. Comprises ROADlib (auth/DB library auto-generated from Azure AD API metadata), ROADrecon (async dump of the full Azure AD graph into a queryable database with an Angular web UI), and roadtx (token exchange supporting authentication flows, device registration, and PRT operations).