Microsoft Entra: Closing attack paths with a free tool

Close attack paths with a free tool

Share post

The attack path management tool Forest Druid, which powers Microsoft Entra, focuses on Tier 0 assets. This means it can identify and close attack paths much more quickly.

Semperis expands its community-powered attack path management tool Forest Druid to support Microsoft Entra ID (formerly Azure Active Directory). This saves cybersecurity teams valuable time identifying and closing risky attack paths in hybrid identity systems.

The new announcement underscores Semperis' strategy to help organizations protect both on-prem Active Directory (AD) and newer, cloud-based identity systems. Semperis recently announced that it will support Okta's solutions with its free and popular vulnerability assessment tool Purple Knight, which has been downloaded by more than 20.000 companies.

Control tier-0 asset attack paths

Unlike traditional AD attack path management tools, which require security professionals to examine a variety of possible attack paths, Forest Druid accelerates analysis by focusing on “Tier 0 assets” – accounts, groups and other assets that have direct or indirect administrative control over an AD or Entra ID environment. This prevents attackers from gaining control of the entire network by accessing Tier 0 assets.

New enhancements to Forest Druid include settings to control data collection from on-prem and cloud identity systems, as well as new controls to improve the Defense Perimeter Relationship Graph. This is a map of all objects with privileged relationships to Tier 0 assets.

“Since its launch in fall 2022, Forest Druid has helped thousands of cybersecurity professionals more quickly identify attack paths and remove disproportionate privileges in Active Directory,” said Darren Mar-Elia, VP of Products at Semperis. “By expanding Forest Druid to support Entra ID, security teams can now detect risky access to Tier-0 assets even in hybrid identity environments – which have become a popular target for cyber attackers. These recent enhancements in Forest Druid and Purple Knight address our customer community’s concerns about emerging attacks on Entra and Okta, as well as traditional AD environments.”

Save time and resources when identifying attack paths

“Cybersecurity professionals are often under time pressure to close security vulnerabilities before they are exploited by attackers,” said Ran Harel, associate vice president of security products at Semperis. “As more companies use cloud identity systems like Entra ID and Okta – often in conjunction with on-premises AD – the attack surface is expanding. This provides more opportunities for malicious actors to penetrate the environment and install malware. Forest Druid helps security managers visually display risky access options to privileged accounts. By identifying the true Tier-0 perimeter and prioritizing sensitive accounts, cybersecurity teams save valuable time and resources protecting the identity system.”

More at Semperis.com

 


About Semperis

For security teams tasked with defending hybrid and multi-cloud environments, Semperis ensures the integrity and availability of critical enterprise directory services at every step in the cyber kill chain, reducing recovery time by 90%. Purpose-built to secure hybrid Active Directory environments, Semperis' patented technology protects over 50 million identities from cyberattacks, data breaches and operational failures.


Matching articles on the topic

Cybersecurity platform with protection for 5G environments

Cybersecurity specialist Trend Micro unveils its platform-based approach to protecting organizations' ever-expanding attack surface, including securing ➡ Read more

Data manipulation, the underestimated danger

Every year, World Backup Day on March 31st serves as a reminder of the importance of up-to-date and easily accessible backups ➡ Read more

Printers as a security risk

Corporate printer fleets are increasingly becoming a blind spot and pose enormous problems for their efficiency and security. ➡ Read more

The AI ​​Act and its consequences for data protection

With the AI ​​Act, the first law for AI has been approved and gives manufacturers of AI applications between six months and ➡ Read more

Windows operating systems: Almost two million computers at risk

There are no longer any updates for the Windows 7 and 8 operating systems. This means open security gaps and therefore worthwhile and ➡ Read more

AI on Enterprise Storage fights ransomware in real time

NetApp is one of the first to integrate artificial intelligence (AI) and machine learning (ML) directly into primary storage to combat ransomware ➡ Read more

DSPM product suite for Zero Trust Data Security

Data Security Posture Management – ​​DSPM for short – is crucial for companies to ensure cyber resilience against the multitude ➡ Read more

Data encryption: More security on cloud platforms

Online platforms are often the target of cyberattacks, such as Trello recently. 5 tips ensure more effective data encryption in the cloud ➡ Read more