Beginner Friendly red team icon   azure

Plunder Azure DevOps for Cloud Credentials

Azure DevOps pipelines are a treasure trove of secrets. Hunt through repositories, service connections, and CI/CD configuration to harvest credentials and pivot into the wider Azure estate.

Overview

Azure DevOps pipelines are a treasure trove of secrets. In this lab you will hunt through repositories, service connections, and CI/CD configuration to harvest credentials and pivot into the wider Azure estate.

Scenario

You are on a red team engagement against Mega Big Tech. Their Azure DevOps organization is in scope. Show how exposed pipeline secrets can hand an attacker the keys to the cloud.

Lab prerequisites
  • Familiarity with the Linux command line
  • Familiarity with Azure
Learning outcomes
  • Enumerate Azure DevOps repositories and pipelines
  • Extract secrets from CI/CD configuration and service connections
  • Abuse a service principal to expand access
  • Access an Azure SQL Database
  • Loot Azure Blob Storage
  • Review infrastructure as code for sensitive data
Real-world context

CI/CD systems have become a leading breach vector, from the Codecov supply chain compromise to the CircleCI incident. Secrets left in pipelines and service connections give attackers a direct route into cloud environments.

platform mock(1)

Cloud Security Training To Protect Your Business

Pwned Labs for Business gives your team access to dedicated business content, including labs and cyber ranges.

We also offer in-person or remote workshops, and our cloud penetration services are helping businesses become more secure!