Connect with us

Hi, what are you looking for?

HEADLINES

SpyCloud launches new tools for checking, maintaining password security in Microsoft Active Directory

New tool monitors for exposed emails, passwords in cybercriminal circles and enforces NIST standards to give enterprises confidence in access controls.

SpyCloud, a key player in account takeover prevention, launched new, automated tools for checking and maintaining password security in Microsoft Active Directory, the central authentication system used by almost all Fortune 1000 companies and by businesses of all sizes around the world.

With SpyCloud Active Directory Guardian, cyber security teams can check employee login credentials in Active Directory against SpyCloud’s data, the largest repository of recovered stolen credentials and personally identifiable information in the world — a collection of more than 76 billion data points. If a password is in SpyCloud’s data lake, it shouldn’t be used in an enterprise’s Active Directory.

Active Directory acts as a single point of authentication for an organization’s entire network, including software, computers and other networked objects, helping employees move between apps and tasks without having to remember passwords for each. However, cyber criminals who obtain stolen passwords and gain access to an employee account in Active Directory can also move easily within an enterprise network, potentially compounding the damage associated with a corporate account takeover. 

SpyCloud’s new automated offering can be set to regularly check usernames and passwords across the enterprise for dark web exposure, and also searches for “fuzzy” matches where letters are replaced with numbers or special characters are added. Security teams receive a report detailing how many credentials are exposed and can force password resets on a person-by-person basis, or for all exposed accounts.

Advertisement. Scroll to continue reading.

With the option to reset weak and exposed passwords automatically, SpyCloud Active Directory Guardian also makes it easy for companies to enforce the latest guidelines from the National Institute of Standards and Technology (NIST) for secure digital authentication. This will guide enterprise employees to create very strong passwords that haven’t been exposed in breaches, are difficult to guess and easy to remember.

“Enterprises using Active Directory Guardian can outpace cyber criminals. The combination of early detection of leaked credentials with automated remediation makes it a comprehensive tool for securing users, both employees and customers, who are often the weakest link in an enterprise’s overall security posture,” said David Endler, SpyCloud’s Chief Product Officer and Co-Founder.

Advertisement
Advertisement
Advertisement

Like Us On Facebook

You May Also Like

HEADLINES

Data privacy is more critical than ever, especially when social media platforms, AI chatbots and connected devices have increased publicly available digital footprints. This...

HEADLINES

Acting on reports about a suspicious message urging customers to click a malicious link to redeem ‘Smart points’, the telco quickly sprang into action...

HEADLINES

Likening the Converge network to a digital fortress, CISO Andrew T.  Malijan said that its battlements were strengthened in 2024 as it blocked a...

HEADLINES

ThinkShield Firmware Assurance is one of the only computer OEM solutions to enable deep visibility and protection below the operating system (OS) by embracing Zero...

HEADLINES

Kaspersky experts have uncovered a series of scams related to the growing demand, ranging from impersonating trusted brands to creating entirely fraudulent storefronts.

HEADLINES

This achievement highlights the increasing demand for Sophos’ proactive, expert-led security solutions, which help organizations of all sizes stay protected 24/7 against increasingly sophisticated...

HEADLINES

Trend's 2025 predictions report warns of the potential for malicious "digital twins," where breached/leaked personal information (PII) is used to train an LLM to...

HEADLINES

The findings show that platform security – securing the hardware and firmware of PCs, laptops and printers – is often overlooked, weakening cybersecurity posture...

Advertisement