ADAssessor to Strengthen Active Directory Protections
ADAssessor provides continuous visibility to on-premises and cloud Active Directory (Azure AD) exposures that are vulnerable to attack and detects AD attack indicators.
ADAssessor for Active Directory and Azure AD Security
Active Directory is one of the main targets of attack because it contains the required information that attackers need to expand their access, establish persistence, elevate privileges, move laterally, and identify targets. By identifying critical on-premises and cloud AD exposures and alerting on attacks that target them, organizations improve their security before attackers can compromise their AD databases.
In addition to attack indicator detection, the solution also provides visibility into critical domain, computer, and user-level exposures. These insights easily show identities and service account risk related to credentials, privileged accounts, stale accounts, shared credentials, and AD attack paths. The solution gathers this information efficiently from the domain, so it does not impact day to day Active Directory operations or employee access to resources.
Adassessor Critical Capabilities
finds exposures
Detect and fix AD weaknesses and exposures
reduces attack surfaces
Eliminate excess and unneeded privileges
detects attacks
Detect advanced Active Directory attack indicators
flexible usage
Periodically and automatically reanalyze AD
“ATTIVO SEEMS TO HAVE A HEAD START IN THE WORLD OF SECURING AD, AND ADASSESSOR SEEMS TO BE THE PRIMARY REASON FOR THAT HEAD START.”
— FRANK J. OHLHORST, AWARD-WINNING TECHNOLOGY JOURNALIST AND IT INDUSTRY ANALYST
privilege & service account exposure visibility
Gain immediate value by identifying and remediating Active Directory security hygiene issues.
ACTIONABLE
Gain substantiated alerts for key exposures at the domain, computer, and user level
VISIBILITY
Identify Active Directory security hygiene issues on an ongoing basis
COMPREHENSIVE
Get full coverage for on-premises and multi-cloud environments
CONTINUOUS
Achieve constant visibility into identities and service account risks
Active Directory Assessments Related To
Credentials
Privileged Accounts
Stale Accounts
Shared Credentials
AD Attack Paths
How ADAssessor for Active Directory Protection Works
Organizations can quickly set up the ADAssessor solution through a single domain-joined system or natively within the cloud. There are no extra privileges required. The Attivo CloudLink service then feeds the data to a cloud-based management console.
Once deployed, the solution:
- Immediately detects vulnerabilities in the AD environment, including misconfigurations, excessive privileges, or data exposures.
- Discovers weaknesses before attackers can exploit them and to reduce the attack surface for on-premises and cloud AD.
- Automatically monitors AD, analyzing changes and new exposures that indicate possible malicious activity.
- Runs continuously or on-demand to protect Active Directory.
On-Premise and Cloud ADAssessor Deployment
Active Directory Detections
— Mass account changes
— Suspicious password changes
— AD-specific attacks
— Weak policies
— Credential harvesting
— Kerberos vulnerabilities
— Domain assessments
— Account and privilege issues
— Service account exposures
— Privileged account exposures
— Rogue domain controllers
— Operating System issues
— AD-related vulnerabilities