{"repo":"zh54321/EntraTokenAid","free":true,"listed":false,"github":"https://github.com/zh54321/EntraTokenAid","clone":"git clone https://github.com/zh54321/EntraTokenAid.git","description":"A pure PowerShell solution for Entra OAuth authentication, enabling easy retrieval of access and refresh tokens","language":"PowerShell","stars":151,"topics":["azure","entra","entra-id","oauth2-client","pentesting","pentesting-tools"],"license":"MIT","category":"security-tools","readme_excerpt":"EntraTokenAid EntraTokenAid is a PowerShell module to simplify OAuth workflows with Microsoft Entra ID, to get the access and refresh tokens for different APIs using different clients. Accessing cleartext access and refresh tokens for various MS APIs (e.g., MS Graph) is often a requirement during engagements and research, especially using pre-consented clients (e.g., AzureCLI) to avoid additional consent prompts. Tokens are needed not only for manual enumeration via APIs but also for tools like AzureHound or GraphRunner, which require a valid refresh token. With more customers starting to block the Device Code Flow, alternative authentication methods for obtaining cleartext refresh tokens are becoming increasingly important. While using AzureCLI modules is a common solution, its installation may not always be feasible—especially on customer systems. Other alternatives like roadtx require Python, which might not be ideal in customer environments. This tool bridges this gap with a lightweight, standalone PowerShell solution that works even on customers' Windows systems. --- Features - No dependencies : A pure PowerShell single-file module that works on Windows systems (tested in PS 5&7) and partially on Linux. - Interactive Authentication : Supports both OAuth Auth Code Flow and Device Code Flow. - Flexible Refresh : Obtain access tokens for any API and client using refresh tokens. - CAE Support : By default, requests CAE (Continuous Access Evaluation) capable access tokens, va","default_branch":null,"files":null,"tree":[],"storefront":"/r/zh54321","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/zh54321/EntraTokenAid/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}