Create an application for Intruder
Login to the Azure management portal > search for
App registrationsusing the search functionality > click
Retrieve the Application ID, Application secret key, Directory ID and Subscription ID from Azure
We require four access keys to connect your Azure account to Intruder:
You need to get them from various sections of the Azure portal, so it's probably best to open a text document that you can copy them into. It should all be straight-forward if you follow the steps below, so hang in there!
Application secret key (in Azure you're looking for the secret 'VALUE')
Now scroll down and click on
Certificates & secretsin the left navigation panel
Click on the
New client secretbutton:
Enter a description (e.g. 'Intruder')
Set an expiry date (i.e. how long you want the secret to be valid for).
(⚠️ Please note that Intruder will no longer be able to access your Azure account when the secret expires.)
Addand note down the
VALUE. (Not the Secret ID).
(You'll need this for the 'Application secret key' field in the Intruder portal.)
⚠️ Please note that you won't be able to see that 'Application secret key' again after you've left this screen, so make sure you copy and paste it now!
Subscriptionsusing the search functionality and click to see the 'Subscriptions' menu.
Select your subscription from the list of Azure Subscriptions displayed. The following screenshots show the 'Intruder' subscription but yours will likely be specific to your organisation
Create a role
Select members', and in the pop up window, search for the application we created earlier (e.g. 'Intruder', or whatever you chose to name it).
Enter the Application ID, Application secret key, Directory ID and Subscription ID into the Intruder portal
Log into the Intruder portal > Targets page >
The next thing you'll see is this modal 👇, for automated management of your cloud targets.
If that's not of interest and you'd like to manage them manually, skip the boxes and simply press
Intruder scans comply with Microsoft's Penetration Testing Rules of Engagement.
Note: Azure integration is only available for customers on our Pro, Premium and Vanguard plans.