CARTP
Altered Security

Certified Azure Red Team Professional

Advanced 24hr Azure lab exam Pass: Passing $249

Azure AD pentesting — tenant recon, service principal abuse, managed identity attacks.

Official Page
IssuerAltered Security
Format24hr Azure lab exam
Duration24 hours
Pass ScorePassing
Recommended Tools
AADInternals Essential
Azure

Azure AD attack toolkit

installInstall-Module AADInternals
usageInvoke-AADIntReconAsOutsider; Get-AADIntLoginInformation
Az CLI Essential
Azure

Official Azure CLI

installpip3 install azure-cli
usageaz login; az account list; az role assignment list --all
AzureHound Essential
Azure

BloodHound for Azure

installgo install github.com/BloodHoundAD/AzureHound@latest
usageazurehound list -t tenantid -u user -p pass -o output.json
GraphRunner Essential
Azure

Microsoft Graph API attack tool

installgit clone https://github.com/dafthack/GraphRunner
usageInvoke-GraphRunner; Get-GraphTokens
MicroBurst Essential
Azure

Azure security assessment scripts

installgit clone https://github.com/NetSPI/MicroBurst
usageInvoke-EnumerateAzureBlobs; Get-AzurePasswords
ROADtools Essential
Azure

Azure AD exploration

installpip3 install roadrecon
usageroadrecon gather -u user@tenant -p pass; roadrecon gui
TokenTactics Essential
Azure

Azure token manipulation

installgit clone https://github.com/rvrsh3ll/TokenTactics
usageInvoke-RefreshToStorageToken; RoadUserToken