Unpacking the AAD Broker LocalState Cache
TL;DR: This post documents the AAD Broker’s storage format, how to unpack it, and discusses potential security implications. An accompanying reference source is also made available at: https://github.com/jackullrich/AADBrokerDecrypt Intro The Azure AD Broker (AAD Broker) is a component of Entra ID that orchestrates Azure AD sign-in, device-bound primary refresh token (PRT) handling, and application token […]