Premium Only Content

GraphSpy - Device Code Token Theft Made Easy
In this video, I walk you through GraphSpy, a powerful reconnaissance and attack tool for Microsoft 365 (M365) Entra (formerly Azure AD). Designed for security researchers and penetration testers, GraphSpy automates token abuse, privilege escalation, and identity reconnaissance within cloud environments. Whether you're testing for misconfigurations or simulating real-world attacks, this tool provides deep insights into OAuth abuse, over-permissioned applications, and tenant-wide security weaknesses.
We cover:
✅ Installation & Setup – How to get GraphSpy running
✅ Usage & Features – A deep dive into reconnaissance and attack capabilities
✅ Practical Demonstration – How to leverage GraphSpy for security testing
This tool is a must-know for security researchers and penetration testers working with Entra AD and M365 environments.
Chapters:
0:00 - Welcome to SYNACK Time
2:00 - Installing Python and GraphSpy
5:00 - Using GraphSpy to steal tokens
19:10 - Outtro
Resources:
GraphSpy Blog - https://insights.spotit.be/2024/04/05/graphspy-the-swiss-army-knife-for-attacking-m365-entra/
GraphSpy Github - https://github.com/RedByte1337/GraphSpy
Disabling Device Code Authentication - https://learn.microsoft.com/en-us/entra/identity/conditional-access/policy-block-authentication-flows
Right of Boom talks about Device Code Logins
https://www.youtube.com/watch?v=QGdonY59DWc
SYNACK Time - https://synacktime.com
SYNACK Time github - https://github.com/SynAckTime/
#GraphSpy #Microsoft365 #EntraID #Cybersecurity #PenTesting #RedTeam #BlueTeam #OffensiveSecurity #EthicalHacking #CloudSecurity #AzureAD #OAuth #SecurityResearch #BugBounty #BlueTeamTools #RedTeamTools #CloudPenTesting #IAMSecurity #CyberThreats #HackerTools
-
LIVE
The Jimmy Dore Show
2 hours agoEmmy Winners DEMAND Israel Stop the Genocide! Charlie Kirk’s LAST INTERVIEW Before His Death!
5,754 watching -
LIVE
LFA TV
22 hours agoLFA TV ALL DAY STREAM - MONDAY 9/15/25
945 watching -
54:12
Donald Trump Jr.
2 hours agoCharlie's Vision. Our Future. | TRIGGERED Ep274
123K92 -
1:03:35
BonginoReport
3 hours agoKirk’s Alleged Killer Dating Hateful Transgender??? - Nightly Scroll w/ Hayley Caronia (Ep.134)
61.5K78 -
1:01:12
The Nick DiPaolo Show Channel
5 hours agoKirk Assassination Exposes Insane Left | The Nick Di Paolo Show #1793
25.9K14 -
LIVE
The Mike Schwartz Show
3 hours agoTHE MIKE SCHWARTZ SHOW Evening Edition 09-15-2025
5,016 watching -
LIVE
LIVE WITH CHRIS'WORLD
5 hours agoLIVE WITH CHRIS'WORLD - They Just Created 1 Million Charlie Kirks
113 watching -
LIVE
Quite Frankly
6 hours agoStaggering Evil, Official Stories & Open Lines | Rich Baris 9/15/25
767 watching -
1:09:33
TheCrucible
4 hours agoThe Extravaganza! EP: 36 (9/15/25)
154K17 -
1:13:06
Candace Show Podcast
3 hours agoThey Are Lying About Charlie Kirk. | Candace Ep 235
75.9K381