Detecting Azure Service Principal Abuse

Detect and investigate Azure service principal abuse including privilege escalation, credential compromise, admin consent bypass, and unauthorized enumeration in Microsoft Entra ID environments.

26zl Updated

File contents

26zl/cybersec-toolkit/tree/main/.claude/skills/detecting-azure-service-principal-abuse commit f014f2a14d

Frequently asked questions

npx skillmds@latest add 26zl/detecting-azure-service-principal-abuse