mirror of
https://github.com/HackTricks-wiki/hacktricks-cloud.git
synced 2026-06-28 09:23:14 -07:00
translate 2
This commit is contained in:
@@ -404,4 +404,3 @@ Invoke-GraphRunner -Tokens $tokens
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -383,4 +383,3 @@ You **cannot** explicitly **deny** **access** to specific resources **using cond
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-2
@@ -122,7 +122,6 @@ azure_cli_bearer_tokens_for_graph_api = azure_cli_client.acquire_token_by_device
|
||||
pprint(azure_cli_bearer_tokens_for_graph_api)
|
||||
|
||||
|
||||
|
||||
# DECODE JWT
|
||||
def decode_jwt(base64_blob: str) -> Dict[str, Any]:
|
||||
"""Decodes base64 encoded JWT blob"""
|
||||
@@ -205,4 +204,3 @@ pprint(microsoft_office_bearer_tokens_for_graph_api)
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -111,4 +111,3 @@ az-lateral-movement-cloud-on-prem/az-phishing-primary-refresh-token-microsoft-en
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -151,4 +151,3 @@ Follow this link for the [**installation instructions**](https://www.powershellg
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -67,4 +67,3 @@ This tool allows to perform several actions like register a machine in Azure AD
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -73,4 +73,3 @@ At this point, we can gather the remaining information needed to connect to Azur
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -41,4 +41,3 @@ Considering the storage of sensitive data in plaintext, it's crucial to secure t
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -41,4 +41,3 @@ Main.py [-h] --usercert USERCERT --certpass CERTPASS --remoteip REMOTEIP
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -39,4 +39,3 @@ Just navigate to login.microsoftonline.com and add the cookie **`ESTSAUTHPERSIST
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -9,4 +9,3 @@
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -9,4 +9,3 @@
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -39,4 +39,3 @@ curl -s -H "Authorization: Bearer <token>" 'https://graph.microsoft.com/v1.0/sit
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -62,4 +62,3 @@ Get-ADSyncConnector
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -51,4 +51,3 @@ Check it in the original post: [https://dirkjanm.io/obtaining-domain-admin-from-
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -11,4 +11,3 @@ The blog post discusses a privilege escalation vulnerability in Azure AD, allowi
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -34,4 +34,3 @@ An automatically, this user will be **synced from AzureAD to the on-prem AD user
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -163,4 +163,3 @@ Open-AADIntOffice365Portal -ImmutableID "aodilmsic30fugCUgHxsnK==" -Issuer http:
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -124,4 +124,3 @@ seamless-sso.md
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -72,4 +72,3 @@ seamless-sso.md
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -286,4 +286,3 @@ roadrecon auth --prt-cookie <cookie> --prt-context <context> --derives-key <deri
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -9,4 +9,3 @@ To start the tests you should have access with a user with **Reader permissions
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
Reference in New Issue
Block a user