Enumerate Azure AD with AzureHound from Userland
This page describes how to enumerate Azure AD with AzureHound, starting from a non-privileged user session on a Windows machine.
Introduction
Requesting a PRT
Requesting Tokens for the MS Graph API
roadrecon auth --prt-cookie <primary refresh token value> -r msgraph -c "1950a258-227b-4e31-a9cf-717495945fc2"

AzureHound Enumeration


Conclusion
References
Last updated