If you're tired of endless slide decks and want to execute actual Azure and AWS attack paths, come break some things in our labs.
To celebrate the launch, we're running a 25% discount on all #CloudBreach courses and certs (OASP, OASE, and OAWSP) until May 23, 2026.
🎟️Just use the code CB25OFF at checkout.
Take a look around the new platform and let me know what you think ! 👇
🔗 https://t.co/9o0T8nhjyF
#CloudSecurity #AWSSecurity #AzureSecurity #OffensiveSecurity #RedTeam
🌩️Azure Tenant Enumeration 👇
Unauthenticated Cheatsheet 2026
Microsoft patched the classics, but recon isn't dead. Here are 4 methods to map tenants without creds:
1️⃣ Sprocket API: https://t.co/ZxRqEZi1sE ("the new way")
2️⃣ OpenID Config: Grep token_endpoint for the GUID 3️⃣ User Realm: Check NameSpaceType status
4️⃣ Passive DNS: Check enterpriseregistration CNAME
Save the image 👇
#CloudBreach #CloudSecurity #RedTeam #Azure #EntraID #OSINT #BugBounty #Infosec #Pentesting #Hacking #breachingazureadvanced
The BEST open-source & paid ASM tools for hackers:
Free and open source:
🆓 Ax Framework (obviously) 🥇
🆓 @owaspamass
🆓 @archerysec
🆓 @superhedgy's AttackSurfaceMapper
🆓 @RiskProfilerIO's CloudFrontier
🆓 @cisagov's crossfeed 🥇
🥇 = Editor's choice
More in thread 🧵👇