's Avatar

@zh54321

6
Followers
39
Following
5
Posts
26.11.2024
Joined
Posts Following

Latest posts by @zh54321

Post image

Tired of sifting through Entra ID manually? EntraFalcon is a PowerShell tool that flags risky objects configs & privileged role assignments with ⚡ Scoring model 📊 HTML reports 🔒 No Graph API consent hassle. Get it now: blog.compass-security.com/2025/04/intr...
#EntraID #IAM

29.04.2025 11:08 👍 6 🔁 5 💬 0 📌 0

Yes, the list in the FOCI repo is a bit outdated. As far as I know, there are 50 enabled FOCI clients. Now all listed in the latest version of GraphPreConsentExplorer.

12.02.2025 20:28 👍 1 🔁 0 💬 0 📌 0

Needed it to implement a small OAuth client. Maybe it is useful fir someone else…

18.01.2025 17:56 👍 0 🔁 0 💬 0 📌 0
Preview
GitHub - zh54321/PowerShell_HttpServer: Simple PowerShell HTTP Server (no dependencies, single file, PowerShell 5.1/7) Simple PowerShell HTTP Server (no dependencies, single file, PowerShell 5.1/7) - zh54321/PowerShell_HttpServer

Simpe PowerShell WebServer

- Starts an HTTP server on any IP and port you specify.
- Handles errors gracefully
- Can be stopped manually with Ctrl+C or automatically after a timeout.
- Easy to integrate in your scripts
- 1 File
- PS 5.1 & PS 7.4

#powershell

github.com/zh54321/Powe...

18.01.2025 17:56 👍 1 🔁 0 💬 2 📌 0
Preview
GitHub - zh54321/PoCEntraDeviceComplianceBypass: Simple pure PowerShell POC to bypass Entra / Intune Compliance Conditional Access Policy Simple pure PowerShell POC to bypass Entra / Intune Compliance Conditional Access Policy - zh54321/PoCEntraDeviceComplianceBypass

Pure PowerShell PoC of the Entra ID Conditional Access Compliant Device bypass. github.com/zh54321/PoCE...

Credits to the researchers
@_dirkjan , @TEMP43487580 . And to @JumpsecLabs for the write-up (labs.jumpsec.com/tokensmith-b...)

#entra #Azure #Intune #pentest

25.12.2024 10:51 👍 1 🔁 1 💬 0 📌 0
Preview
GitHub - zh54321/EntraTokenAid: A pure PowerShell solution for Entra OAuth authentication, enabling easy retrieval of access and refresh tokens A pure PowerShell solution for Entra OAuth authentication, enabling easy retrieval of access and refresh tokens - zh54321/EntraTokenAid

🚀 Just released EntraTokenAid: a pure PowerShell module for MS Entra OAuth auth.

🔑 Auth as AzureCLI (or other clients), get access/refresh tokens for APIs like MS Graph / ARM etc.

✨ Lightweight, portable, no dependencies!

👉 github.com/zh54321/Entr...

#Entra #Azure #pentesting #entraid

26.11.2024 18:08 👍 1 🔁 0 💬 0 📌 0