AzDevRecon - Azure DevOps Enumeration Tool logo

AzDevRecon - Azure DevOps Enumeration Tool


Raunak Parmar 



From GitHub - TROUBLE-1/AzDevRecon :

AzDevRecon is a web-based enumeration tool for offensive security professionals, red teamers, and pentesters targeting Azure DevOps. It uses token-based authentication (PAT or Azure DevOps access tokens) to uncover projects, repositories, pipelines, secrets, and user permissions, helping identify misconfigurations and security gaps in DevOps environments.

Features: token-based enumeration; project and repository discovery; pipeline and build enumeration; secrets and credential hunting; user and permission analysis; web-based UI (Flask app, default http://localhost:5000). Python 3.8+; intended for authorized security testing and education. MIT license.

List of Sessions