Premium Only Content

GraphSpy - Device Code Token Theft Made Easy
In this video, I walk you through GraphSpy, a powerful reconnaissance and attack tool for Microsoft 365 (M365) Entra (formerly Azure AD). Designed for security researchers and penetration testers, GraphSpy automates token abuse, privilege escalation, and identity reconnaissance within cloud environments. Whether you're testing for misconfigurations or simulating real-world attacks, this tool provides deep insights into OAuth abuse, over-permissioned applications, and tenant-wide security weaknesses.
We cover:
✅ Installation & Setup – How to get GraphSpy running
✅ Usage & Features – A deep dive into reconnaissance and attack capabilities
✅ Practical Demonstration – How to leverage GraphSpy for security testing
This tool is a must-know for security researchers and penetration testers working with Entra AD and M365 environments.
Chapters:
0:00 - Welcome to SYNACK Time
2:00 - Installing Python and GraphSpy
5:00 - Using GraphSpy to steal tokens
19:10 - Outtro
Resources:
GraphSpy Blog - https://insights.spotit.be/2024/04/05/graphspy-the-swiss-army-knife-for-attacking-m365-entra/
GraphSpy Github - https://github.com/RedByte1337/GraphSpy
Disabling Device Code Authentication - https://learn.microsoft.com/en-us/entra/identity/conditional-access/policy-block-authentication-flows
Right of Boom talks about Device Code Logins
https://www.youtube.com/watch?v=QGdonY59DWc
SYNACK Time - https://synacktime.com
SYNACK Time github - https://github.com/SynAckTime/
#GraphSpy #Microsoft365 #EntraID #Cybersecurity #PenTesting #RedTeam #BlueTeam #OffensiveSecurity #EthicalHacking #CloudSecurity #AzureAD #OAuth #SecurityResearch #BugBounty #BlueTeamTools #RedTeamTools #CloudPenTesting #IAMSecurity #CyberThreats #HackerTools
-
7:34:25
Dr Disrespect
18 hours ago🔴LIVE - DR DISRESPECT - WARZONE - IMPOSSIBLE TRIPLE THREAT CHALLENGE
200K30 -
1:02:45
Tundra Tactical
8 hours ago $22.48 earned🛑 KASH PATEL NEW ATF DIRECTOR??? Breaking News!!!! 🛑
64.3K9 -
4:31:10
I_Came_With_Fire_Podcast
19 hours agoMy EURO Divorce | HOGG with a side of PAC | Foreign FUNDS Fudged
37.9K2 -
37:44
Glenn Greenwald
15 hours agoGlenn On Tearing Down the Military Industrial Complex, Exposing Pro-Israel Indoctrination, and More | SYSTEM UPDATE #411
115K129 -
4:04:20
Nerdrotic
14 hours ago $51.95 earnedAmazon Takes 007! Hollywood is Lost, Disney Cancels WHO? | Friday Night Tights 342 /w ItsAGundam
175K45 -
43:27
Tucker Carlson
14 hours agoRay Dalio: America’s Hidden Civil War, and the Race to Beat China in Tech, Economics, and Academia
169K190 -
56:56
Candace Show Podcast
14 hours agoEXCLUSIVE: Taylor Swift Will Be Deposed. | Candace Ep 150
206K156 -
1:03:52
IsaacButterfield
11 hours ago $7.35 earnedRepublican Vs 25 Transgender Activists | Jewish Outrage | Lizzo Loses All the Weight
65.4K14 -
1:10:23
Edge of Wonder
15 hours agoChinese Biochips Hacking Minds? Quantum Control & Journey Song Mandela Effect
86.1K9 -
2:15:46
Quite Frankly
18 hours ago"Ghosts, Robotics, and OBE's" ft. Dr. Albert Taylor 2/21/25
78.7K18