Attacking Key Vaults
Azure AD (AAD)
While owning users and devices in AAD environments, it's good practice to look out for permissions like
Microsoft.KeyVault/vaults/read # read keys in a vault
Microsoft.KeyVault/vaults/secrets/read # read the plaintext passwords in...