Home About Contribute Sponsorship Contact Sign In


Technology Industry News

Semperis Launches Active Directory Security Halftime Report

New resource provides timely index of escalating cybercriminal tactics, practical resources for cybersecurity skill-building, and latest Active Directory and Azure Active Directory vulnerabilities

Semperis Launches Active Directory Security Halftime Report

"Active Directory remains the beating heart of identity management, the core of the identity platform for most organizations but everything around it has changed rapidly."
Mickey Bresman, CEO and co founder, Semperis

Semperis, the pioneer of identity-driven cyber resilience for enterprises, today announced the release of the Active Directory Security Halftime Report, the first in a periodic series of insights and practical skill-building resources for preventing and mitigating identity-related cyberattacks. The report addresses the surge in identity-related attacks and vulnerabilities—from the Colonial Pipeline breach to the Windows Print Spooler vulnerability—with expert advice on hardening identity security postures that have eroded through years of misconfigurations and lagging skillsets.

“Active Directory remains the beating heart of identity management—the core of the identity platform for most organizations—but everything around it has changed rapidly,” said Mickey Bresman, CEO at Semperis. “AD secure configuration was not as much of a concern 15 years ago, and many recommendations that were provided at the time proved to be insecure and have been completely revised since. A lot of the mistakes that were made then are the problems organizations now need to address.”

Bresman also calls out lagging skillsets at a time when conversations about protecting the business from cyberattacks are converging for identity and security teams.

“You have people that know AD extremely well, but their thinking is more operationally related,” said Bresman. “Or you have people that know red-teaming and security extremely well, but they are not AD experts. It's not that simple to find that combination of skills in a single person.”

Against a backdrop of these escalating identity-related cyberattacks, the Active Directory Security Halftime Report highlights the essential areas of focus for identity and access management (IAM) teams, security teams, and CISOs responsible for guarding organizations’ identity systems.

More than two-thirds of the Halftime Report will provide how-to guidance from highly experienced identity experts (including longtime recognized Microsoft MVPs) for preventing, mitigating, and recovering from identity system cyberattacks. Identity systems continue to be a prime attack vector for cybercriminals despite well-known vulnerabilities—especially in Active Directory, the core identity store for 90% of businesses worldwide.

With an emphasis on fast-track skills-building for identity and security professionals, the Active Directory Security Halftime Report consolidates:

·         Practical guidelines for hardening AD security by closing common gaps that can be uncovered with the free security assessment tool Purple Knight, built by Semperis identity and access management (IAM) experts;

·         New perspectives on building a cyber-resilient organization by breaking down siloes between identity and security teams;

·         Tips for managing security in increasingly complex hybrid identity systems, particularly across on-premises Active Directory and Azure Active Directory environments; and

·         Trends in cybercriminals’ tactics for compromising identity systems, as highlighted in the monthly Semperis Identity Attack Watch series.

The Active Directory Security Halftime Report, available at https://pages.semperis.com/2021-ad-security-halftime-report/, will be updated on a periodic basis to serve as a timely, concise index of resources for organizations that have prioritized hardening their Active Directory and Azure Active Directory defenses against escalating cyberattacks.

Although the threat landscape is continually expanding, organizations can improve their security posture by methodically identifying and addressing the well-known identity-related vulnerabilities covered in the Active Directory Security Halftime Report.

“Regardless of the particular mix of on-premises and cloud systems and assets, every organization will need to protect the identity store,” said Bresman. “Identity is going to continue to play a huge role in the protection game that we are playing against the adversaries.”


About Semperis
For security teams charged with defending hybrid and multi-cloud environments, Semperis ensures integrity and availability of critical enterprise directory services at every step in the cyber kill chain and cuts recovery time by 90%. Purpose-built for securing Active Directory, Semperis’ patented technology protects over 40 million identities from cyberattacks, data breaches, and operational errors. The world’s leading organizations trust Semperis to spot directory vulnerabilities, intercept cyberattacks in progress, and quickly recover from ransomware and other data integrity emergencies. Semperis is headquartered in New Jersey and operates internationally, with its research and development team distributed between San Francisco and Tel Aviv.


Semperis hosts the award-winning Hybrid Identity Protection conference (www.hipconf.com). The company has received the highest level of industry accolades and was recently ranked the fourth fastest-growing company in the tri-state area and 35th overall in Deloitte’s 2020 Technology Fast 500™. Semperis is accredited by Microsoft and recognized by Gartner.


Twitter https://twitter.com/SemperisTech

LinkedIn https://www.linkedin.com/company/semperis

Facebook https://www.facebook.com/SemperisTech

YouTube https://www.youtube.com/channel/UCycrWXhxOTaUQ0sidlyN9SA 


Technology Business News - LOS ANGELES 23rd March 2021 - Cloud security innovation leader, Orca Security, has today announced a successful 210 million Series C funding round.

Orca Security announce $210m Series C round led by CapitalG and Redpoint Ventures

Technology Business News - As the finance industry increasingly adopts digital onboarding technologies, they are utilizing and storing more of our biometric data and personal identification information.

Regulation needed to ensure Finance Industry use compliant Digital Identity technologies

Technology Business News - If you don t work in the Finance industry, you naturally aren t too concerned with financial services industry regulations. Yet some regulations don t just affect the people who work in the finance industry they affect everyone.

Global Finance Industry faces further regulation after pandemic exposes weaknesses

Technology Business News - Global healthcare leader Abbott have announced the release of their first Virtual Reality training program, powered by Oculus Go , aiming to fundamentally change how cardiologists are trained in using Optical Coherence Tomography OCT imaging technology.

Abbott launches flagship Imaging Technology VR Training Program for Cardiologists

Technology Business News - Next year will be the 40th anniversary of the launch of MTV. Launched in August 1981, MTV aptly chose Video Killed The Radio Star by The Buggles as their first featured music video. Video never did kill the radio star, online radio stations and music streaming services have never been more popular.

YouTube creator brings electronic music to life with visionary video productions

Technology Business News - Organizations invest heavily in security and compliance. They secure and monitor emails, networks and devices to help protect their data, employees and reputation.

Theta Lake's rapid rise to prominence from the need to protect the collaborative workplace

Ten Times Ten

Analytics, Modelling & Business Intelligence Specialists