What problem does it solve?
This Skill helps red-team operators and bug hunters identify and exploit vulnerabilities in Microsoft 365 / Entra ID, providing a comprehensive attack chain for credential attacks, user enumeration, and conditional access bypass.
Core Features & Use Cases
- Attack Chain: Offers a detailed attack chain for M365/Entra ID, including AADSTS code reference, user enumeration vectors, Smart Lockout math, and Conditional Access bypass options.
- Tenant Discovery: Includes tools for discovering tenant information and user enumeration vectors.
- Password Spray: Provides techniques for password spray attacks, including handling Smart Lockout policies.
- MFA Bypass: Offers methods for bypassing Multi-Factor Authentication and conditional access controls.
- Use Case: When targeting an organization using M365/Entra ID, this Skill can be used to perform a comprehensive red-team assessment, including user enumeration, credential attacks, and bypassing security controls.
Quick Start
Use the m365-entra-attack skill to discover tenants and enumerate users in the target organization.