Microsoft’s Active Directory (AD) is one of the most widely used directory services on the market, being used in almost every industry. AD is used in Microsoft Windows domain environments to organize and manage users, computers, groups, privileges, passwords, applications, databases, and many other resources across the domain(s). If not administered properly, an insecure AD can lead to a full domain compromise, including all data, services, and intellectual properties that keep an organization in business.
Often, AD security will be ignored in favor of new firewalls, email spam filters, endpoint detection & response (EDR), and other security hardware and services. However, these solutions do not always stop advanced adversaries. Once an advanced attacker managers to bypass an organization’s suite of security products, AD is often not organized in a manner that effectively slows the attack path or brings the attack to a halt. AD security is crucial at thwarting attackers or insider threats, which is where an AD Audit can help.