detecting-azure-service-principal-abuse
mukul975/Anthropic-Cybersecurity-Skills
Provides playbooks and detection rules to uncover Azure service principal abuse, covering credential injection, privileged role assignment, admin consent bypass, and enumeration, with Sentinel, Splunk, and Microsoft Graph guided procedures for SOC investigations.