@@ -5,7 +5,10 @@ Delegated,Contacts,High,Phishing
55Delegated,MailboxSettings,High,Phishing
66Delegated,People,High,Phishing
77Delegated,Files,High,Phishing
8+ Delegated,AllSites,High,Phishing
89Delegated,Notes,High,Phishing
10+ Delegated,Policy,High,Phishing
11+ Delegated,AppRoleAssignment.ReadWrite.All,High,Phishing
912Delegated,Directory.AccessAsUser.All,High,Phishing
1013Delegated,user_impersonation,High,Phishing
1114Delegated,Application.ReadWrite.All,High,BroadImpact
@@ -15,14 +18,24 @@ Delegated,EduRoster.ReadWrite.All,High,BroadImpact
1518Delegated,Group.ReadWrite.All,High,BroadImpact
1619Delegated,Member.Read.Hidden,High,BroadImpact
1720Delegated,RoleManagement.ReadWrite.Directory,High,BroadImpact
21+ Delegated,RoleAssignmentSchedule.ReadWrite.Directory,High,BroadImpact
22+ Delegated,RoleEligibilitySchedule.ReadWrite.Directory,High,BroadImpact
1823Delegated,User.ReadWrite.All,High,BroadImpact
1924Delegated,User.ManageCreds.All,High,BroadImpact
25+ Delegated,User.Export.All,High,BroadImpact
2026Application,Mail,High,Phishing
2127Application,Contacts,High,Phishing
2228Application,MailboxSettings,High,Phishing
2329Application,People,High,Phishing
2430Application,Files,High,Phishing
31+ Application,Sites,High,Phishing
32+ Application,AllSites,High,Phishing
2533Application,Notes,High,Phishing
34+ Application,Policy,High,BroadImpact
35+ Application,PrivilegedAccess,High,BroadImpact
36+ Application,PrivilegedAssignmentSchedule,High,BroadImpact
37+ Application,PrivilegedEligibilitySchedule,High,BroadImpact
38+ Application,AppRoleAssignment.ReadWrite.All,High,Phishing
2639Application,Directory.AccessAsUser.All,High,Phishing
2740Application,user_impersonation,High,Phishing
2841Application,Application.ReadWrite.All,High,BroadImpact
@@ -31,12 +44,14 @@ Application,Domain.ReadWrite.All,High,BroadImpact
3144Application,EduRoster.ReadWrite.All,High,BroadImpact
3245Application,Group.ReadWrite.All,High,BroadImpact
3346Application,Member.Read.Hidden,High,BroadImpact
47+ Application,UserAuthenticationMethod.ReadWrite.All,High,BroadImpact
3448Application,RoleManagement.ReadWrite.Directory,High,BroadImpact
3549Application,User.ReadWrite.All,High,BroadImpact
3650Application,User.ManageCreds.All,High,BroadImpact
51+ Application,CallRecords.Read.All,High,SensitiveData
3752Delegated,User.Read,Low,Common pattern
3853Delegated,User.ReadBasic.All,Low,Common pattern
39- Delegated,open_id ,Low,Common pattern
54+ Delegated,openid ,Low,Common pattern
4055Delegated,email,Low,Common pattern
4156Delegated,profile,Low,Common pattern
4257Delegated,offline_access,Low,Common pattern when used with other low permissions
0 commit comments