{"id":7530,"date":"2024-04-30T12:04:44","date_gmt":"2024-04-30T10:04:44","guid":{"rendered":"https:\/\/heliview.com\/identity-access-management\/?p=7530"},"modified":"2024-05-13T11:48:27","modified_gmt":"2024-05-13T09:48:27","slug":"the-identity-underground-report","status":"publish","type":"post","link":"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/","title":{"rendered":"The Identity Underground Report"},"content":{"rendered":"<div class=\"wpb-content-wrapper\">[vc_row][vc_column width=&#8221;2\/3&#8243;][vc_column_text css=&#8221;&#8221;]Your defenses are sky high, but underground you\u2019re exposed.<\/p>\n<p>When it comes to identity protection, the user accounts and configurations we\u2019re aware of lie in full view above the ground. We can, therefore, defend them effectively against identity threats.<\/p>\n<p>Unfortunately, this aboveground knowledge is painfully limited. Beneath the known identity attack surface exists an underground world of misconfigurations, forgotten user accounts, legacy settings, malpractices, and insecure built-in features. In this report we refer to these as Identity Threat Exposures (ITEs).<\/p>\n<p>Attackers use these ITEs as co-conspirators to perform credential theft, privilege escalation and lateral movement. What\u2019s more, due to the common practice of syncing AD user accounts to the cloud IdP, this underground exposure could also provide attackers with direct access to your SaaS environment.<\/p>\n<p>We took a deep dive into the prevalence and severity of ITEs in hundreds of live production environments \u2013 and this is what we discovered:<\/p>\n<p>67% of organizations exposed their SaaS apps to compromise with insecure on-prem password sync.<\/p>\n<p>37% of admins authenticate in NTLM, enabling attackers to access cleartext passwords.<\/p>\n<p>109 new shadow admins are, on average, introduced by a single AD misconfiguration, enabling attackers to reset a true admin\u2019s password.<\/p>\n<p>31% of all users are service accounts with high access privileges and low visibility.[\/vc_column_text]        <div class=\"lgx-subscriber-area\" >\n            <form class=\"vc-whitepaper-form\">\n                <h3>download the whitepaper<\/h3>\n                <p class=\"nieuwsbrief-validation-error nieuwsbrief-validation-error--message hidden\">\n                    E\u00e9n of meerdere velden zijn niet of incorrect ingevuld.\n                <\/p>\n                <div class=\"row\">\n                    <label class=\"col-xs-6\">\n                        Voornaam*<br>\n                        <input type=\"text\" name=\"firstname\" maxlength=\"50\" autocomplete=\"given-name\">\n                    <\/label>\n                    <label class=\"col-xs-6\">\n                        Achternaam*<br>\n                        <input type=\"text\" name=\"lastname\" maxlength=\"50\" autocomplete=\"family-name\">\n                    <\/label>\n                <\/div>\n                <div class=\"row\">\n                    <label class=\"col-xs-6\">\n                        Bedrijfsnaam*<br>\n                        <input type=\"text\" name=\"companyname\" value=\"\" size=\"50\" autocomplete=\"organization\">\n                    <\/label>\n                    <label class=\"col-xs-6\">\n                        Functie*<br>\n                        <input type=\"text\" name=\"workdescription\" value=\"\" size=\"100\" autocomplete=\"organization\">\n                    <\/label>\n                <\/div>\n                <label>\n                    Zakelijk E-mailadres*\n                    <input type=\"email\" id=\"EmailAddressNewsletter\" name=\"email\" \/>\n                <\/label>\n                <p>Door op aanmelden te klikken geeft u toestemming om gemaild te worden, u ontvangt de whitepaper in uw mailbox.<\/p>\n                <input onclick=\"Website.SubscribeToNewsletter('851292295237', '80d1b905-1227-4cac-a875-8623a22b4ebc')\" type=\"button\" class=\"lgx-btn\" value=\"Aanmelden\">\n                <div id=\"NewsletterSuccess\" class=\"nieuwsbrief-succes hidden\">Bedankt, je ontvangt binnen een paar minuten een e-mail om de whitepaper te downloaden.<\/div>\n                <div id=\"NewsletterError\" class=\"nieuwsbrief-error hidden\">Er is helaas iets mis gegaan; uw aanvraag is niet gelukt. Probeer het later nog eens.<\/div>\n            <\/form>\n        <\/div>[vc_empty_space][\/vc_column][vc_column width=&#8221;1\/3&#8243;][vc_wp_search][vc_wp_posts title=&#8221;Ander nieuws&#8221; number=&#8221;3&#8243;]<div class=\"wpb-content-wrapper\">[vc_row][vc_column][vc_raw_html]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[\/vc_raw_html][\/vc_column][\/vc_row]\n<\/div>[\/vc_column][\/vc_row]\n<\/div>","protected":false},"excerpt":{"rendered":"Your defenses are sky high, but underground you\u2019re exposed. When it comes to identity protection, the user accounts and configurations we\u2019re aware of lie in full view above the ground. We can, therefore, defend them effectively against identity threats. Unfortunately, this aboveground knowledge is painfully limited. Beneath the known identity attack surface exists an underground [...]","protected":false},"author":21,"featured_media":7580,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[2,3,16],"tags":[],"class_list":["post-7530","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-branche-nieuws","category-congres-update","category-home"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v25.3.1 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\r\n<title>The Identity Underground Report - Identity &amp; Access Management<\/title>\r\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\r\n<link rel=\"canonical\" href=\"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/\" \/>\r\n<meta property=\"og:locale\" content=\"nl_NL\" \/>\r\n<meta property=\"og:type\" content=\"article\" \/>\r\n<meta property=\"og:title\" content=\"The Identity Underground Report - Identity &amp; Access Management\" \/>\r\n<meta property=\"og:url\" content=\"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/\" \/>\r\n<meta property=\"og:site_name\" content=\"Identity &amp; Access Management\" \/>\r\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/HeliviewCT\" \/>\r\n<meta property=\"article:published_time\" content=\"2024-04-30T10:04:44+00:00\" \/>\r\n<meta property=\"article:modified_time\" content=\"2024-05-13T09:48:27+00:00\" \/>\r\n<meta property=\"og:image\" content=\"https:\/\/heliview.com\/identity-access-management\/wp-content\/uploads\/sites\/21\/2024\/04\/Silverfort.png\" \/>\r\n\t<meta property=\"og:image:width\" content=\"1140\" \/>\r\n\t<meta property=\"og:image:height\" content=\"350\" \/>\r\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\r\n<meta name=\"author\" content=\"ebru\" \/>\r\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\r\n<meta name=\"twitter:creator\" content=\"@HeliviewConf\" \/>\r\n<meta name=\"twitter:site\" content=\"@HeliviewConf\" \/>\r\n<meta name=\"twitter:label1\" content=\"Geschreven door\" \/>\n\t<meta name=\"twitter:data1\" content=\"ebru\" \/>\n\t<meta name=\"twitter:label2\" content=\"Geschatte leestijd\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minuten\" \/>\r\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/\",\"url\":\"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/\",\"name\":\"The Identity Underground Report - Identity &amp; Access Management\",\"isPartOf\":{\"@id\":\"https:\/\/heliview.com\/identity-access-management\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/heliview.com\/identity-access-management\/wp-content\/uploads\/sites\/21\/2024\/04\/Silverfort.png\",\"datePublished\":\"2024-04-30T10:04:44+00:00\",\"dateModified\":\"2024-05-13T09:48:27+00:00\",\"author\":{\"@id\":\"https:\/\/heliview.com\/identity-access-management\/#\/schema\/person\/4f8e4b0e10f5108a07b7af6b96e17f1a\"},\"breadcrumb\":{\"@id\":\"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/#breadcrumb\"},\"inLanguage\":\"nl-NL\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"nl-NL\",\"@id\":\"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/#primaryimage\",\"url\":\"https:\/\/heliview.com\/identity-access-management\/wp-content\/uploads\/sites\/21\/2024\/04\/Silverfort.png\",\"contentUrl\":\"https:\/\/heliview.com\/identity-access-management\/wp-content\/uploads\/sites\/21\/2024\/04\/Silverfort.png\",\"width\":1140,\"height\":350},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/heliview.com\/identity-access-management\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"The Identity Underground Report\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/heliview.com\/identity-access-management\/#website\",\"url\":\"https:\/\/heliview.com\/identity-access-management\/\",\"name\":\"Identity &amp; Access Management\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/heliview.com\/identity-access-management\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"nl-NL\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/heliview.com\/identity-access-management\/#\/schema\/person\/4f8e4b0e10f5108a07b7af6b96e17f1a\",\"name\":\"ebru\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"nl-NL\",\"@id\":\"https:\/\/heliview.com\/identity-access-management\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/fad809c832c367ddbdb46ca756da41602d06379e2ede12235d1a56eafdd53ef2?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/fad809c832c367ddbdb46ca756da41602d06379e2ede12235d1a56eafdd53ef2?s=96&d=mm&r=g\",\"caption\":\"ebru\"}}]}<\/script>\r\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"The Identity Underground Report - Identity &amp; Access Management","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/","og_locale":"nl_NL","og_type":"article","og_title":"The Identity Underground Report - Identity &amp; Access Management","og_url":"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/","og_site_name":"Identity &amp; Access Management","article_publisher":"https:\/\/www.facebook.com\/HeliviewCT","article_published_time":"2024-04-30T10:04:44+00:00","article_modified_time":"2024-05-13T09:48:27+00:00","og_image":[{"width":1140,"height":350,"url":"https:\/\/heliview.com\/identity-access-management\/wp-content\/uploads\/sites\/21\/2024\/04\/Silverfort.png","type":"image\/png"}],"author":"ebru","twitter_card":"summary_large_image","twitter_creator":"@HeliviewConf","twitter_site":"@HeliviewConf","twitter_misc":{"Geschreven door":"ebru","Geschatte leestijd":"2 minuten"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/","url":"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/","name":"The Identity Underground Report - Identity &amp; Access Management","isPartOf":{"@id":"https:\/\/heliview.com\/identity-access-management\/#website"},"primaryImageOfPage":{"@id":"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/#primaryimage"},"image":{"@id":"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/#primaryimage"},"thumbnailUrl":"https:\/\/heliview.com\/identity-access-management\/wp-content\/uploads\/sites\/21\/2024\/04\/Silverfort.png","datePublished":"2024-04-30T10:04:44+00:00","dateModified":"2024-05-13T09:48:27+00:00","author":{"@id":"https:\/\/heliview.com\/identity-access-management\/#\/schema\/person\/4f8e4b0e10f5108a07b7af6b96e17f1a"},"breadcrumb":{"@id":"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/#breadcrumb"},"inLanguage":"nl-NL","potentialAction":[{"@type":"ReadAction","target":["https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/"]}]},{"@type":"ImageObject","inLanguage":"nl-NL","@id":"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/#primaryimage","url":"https:\/\/heliview.com\/identity-access-management\/wp-content\/uploads\/sites\/21\/2024\/04\/Silverfort.png","contentUrl":"https:\/\/heliview.com\/identity-access-management\/wp-content\/uploads\/sites\/21\/2024\/04\/Silverfort.png","width":1140,"height":350},{"@type":"BreadcrumbList","@id":"https:\/\/heliview.com\/identity-access-management\/the-identity-underground-report\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/heliview.com\/identity-access-management\/"},{"@type":"ListItem","position":2,"name":"The Identity Underground Report"}]},{"@type":"WebSite","@id":"https:\/\/heliview.com\/identity-access-management\/#website","url":"https:\/\/heliview.com\/identity-access-management\/","name":"Identity &amp; Access Management","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/heliview.com\/identity-access-management\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"nl-NL"},{"@type":"Person","@id":"https:\/\/heliview.com\/identity-access-management\/#\/schema\/person\/4f8e4b0e10f5108a07b7af6b96e17f1a","name":"ebru","image":{"@type":"ImageObject","inLanguage":"nl-NL","@id":"https:\/\/heliview.com\/identity-access-management\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/fad809c832c367ddbdb46ca756da41602d06379e2ede12235d1a56eafdd53ef2?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/fad809c832c367ddbdb46ca756da41602d06379e2ede12235d1a56eafdd53ef2?s=96&d=mm&r=g","caption":"ebru"}}]}},"acf":[],"_links":{"self":[{"href":"https:\/\/heliview.com\/identity-access-management\/wp-json\/wp\/v2\/posts\/7530","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/heliview.com\/identity-access-management\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/heliview.com\/identity-access-management\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/heliview.com\/identity-access-management\/wp-json\/wp\/v2\/users\/21"}],"replies":[{"embeddable":true,"href":"https:\/\/heliview.com\/identity-access-management\/wp-json\/wp\/v2\/comments?post=7530"}],"version-history":[{"count":2,"href":"https:\/\/heliview.com\/identity-access-management\/wp-json\/wp\/v2\/posts\/7530\/revisions"}],"predecessor-version":[{"id":7583,"href":"https:\/\/heliview.com\/identity-access-management\/wp-json\/wp\/v2\/posts\/7530\/revisions\/7583"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/heliview.com\/identity-access-management\/wp-json\/wp\/v2\/media\/7580"}],"wp:attachment":[{"href":"https:\/\/heliview.com\/identity-access-management\/wp-json\/wp\/v2\/media?parent=7530"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/heliview.com\/identity-access-management\/wp-json\/wp\/v2\/categories?post=7530"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/heliview.com\/identity-access-management\/wp-json\/wp\/v2\/tags?post=7530"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}