m365-entra-attack

Enumerate users and bypass conditional access in M365/Entra ID environments.

Updated Jun 18, 2026
One-click install
npx skills add https://github.com/Kisilev13/Hermes-Agent-Workspace --skill m365-entra-attack-kisilev13
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: m365-entra-attack
Source: https://github.com/Kisilev13/Hermes-Agent-Workspace/tree/main/skills/m365-entra-attack
Command: npx skills add https://github.com/Kisilev13/Hermes-Agent-Workspace --skill m365-entra-attack-kisilev13

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) components.

What problem does it solve?

This Skill allows red-teaming professionals to exploit vulnerabilities in Microsoft 365/Entra ID, providing attack vectors and tools to bypass security measures and enumerate users.

Core Features & Use Cases

  • User Enumeration: Identify and exploit weaknesses in user enumeration processes.
  • Credential Attacks: Perform password spray and other credential-based attacks.
  • Conditional Access Bypass: Discover and bypass Conditional Access policies.
  • Use Case: When conducting a red-team assessment on a client's M365/Entra ID infrastructure, use this Skill to identify potential weaknesses and demonstrate the impact of various attack scenarios.

Quick Start

Utilize the m365-entra-attack skill to perform user enumeration on the client's M365 tenant using the provided commands.

Frequently Asked Questions about m365-entra-attack

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I enumerate users in an M365 tenant for a red-team assessment?

You can perform M365 user enumeration using this Skill to identify and exploit weaknesses in tenant discovery processes, extracting valid usernames from the target environment during red-team assessments.

Can I bypass Conditional Access policies in Entra ID?

Yes, this Skill helps discover and bypass Entra ID Conditional Access policies during red-team engagements to demonstrate the impact of misconfigured security controls in multi-tenant setups.

What is the best way to perform a password spraying attack on M365?

For M365 password spraying, this Skill provides credential attack capabilities designed to perform credential-based attacks against hybrid authentication environments and multi-tenant setups.

Does this M365 attack Skill work with hybrid authentication environments?

Yes, this Skill explicitly applies to hybrid authentication environments and multi-tenant setups, allowing you to assess security vulnerabilities across complex M365 and Entra ID infrastructures.

What tools do I need for Entra ID tenant discovery and authentication testing?

This Skill requires external tools for tenant discovery, authentication, and security assessment to identify and exploit M365/Entra ID vulnerabilities during red-team operations.

Are there limitations when testing Entra ID security with this approach?

A key limitation is that this Skill requires additional external tools for tenant discovery and authentication, meaning it provides attack vectors and commands rather than an all-in-one testing environment.