Active Directory & Identity Security

Most privilege escalation traces to privilege management rather than a patchable flaw. These articles cover Active Directory and Entra ID configuration weaknesses – NTLM, cached credentials, pass-the-hash, delegation, legacy permissions – and the specific settings that stop lateral movement before it starts.

Automating Endpoint Remediation Without Operational Risk

Automating Endpoint Remediation Without Operational Risk

From patches and configuration changes to software removal, the devil is in the details when it comes to remediating endpoints. Here we look at the role played by impact analysis, controlled execution, verification, and rollback in preventing operation disruption.

Learn more

Topic

Author

3-known-risk-continuous-risk-reduction

For Continuous Risk Reduction, Start With 3 Cyber Problems

Most cyber risk isn’t unknown, it’s unresolved. Identity drift, exposed remote access, and shadow AI keep known exposures alive. Here's how continuous risk reduction can close the gap.

Ilan Mintz
Ilan Mintz
Jul 22, 2026 | 7 min read

AI Attack Surface: Five Ways AI Is Expanding Enterprise Risk

AI has introduced new applications, identities, permissions, and data flows. Explore five ways it is expanding the enterprise attack surface and increasing risk.

Ilan Mintz
Ilan Mintz
Jun 10, 2026 | 10 min read

Want updates?

Capture the noteworthy, cut the noise!

Get Remedio’s monthly endpoint security briefing on emerging risks, hardening strategies, and what’s new in enterprise security.

Subscribe to our newsletter to stay up-to-date and in the loop.

One email a month. Unsubscribe anytime.

Plaintext Passwords: The Misconfiguration Risk That Can Cost Millions

Plaintext passwords and weak configurations continue to expose organizations to supply chain attacks. Learn how to eliminate these preventable security risks.

Eden Aizenkot
Eden Aizenkot
Aug 13, 2025 | 5 min read

Least Privilege Access Starts with Smart Configuration

Least privilege depends on more than permissions alone. Learn how secure configurations help enforce access controls while reducing operational complexity.

Ofir Biton
Ofir Biton
Aug 11, 2025 | 6 min read

Active Directory Security: Lock It Down Before Attackers Move In

Active Directory remains one of the most targeted enterprise assets. Learn how stronger configurations and continuous oversight help protect your identity infrastructure.

Eden Aizenkot
Eden Aizenkot
Aug 11, 2025 | 7 min read

RDP Security: Why Old Remote Access Risks Keep Returning

Remote Desktop Protocol remains a favorite target for attackers. Learn how to reduce RDP exposure through stronger configurations, hardening, and access controls.

Ilan Mintz
Ilan Mintz
Jul 20, 2025 | 5 min read

LockBit 2.0 Ransomware: Insights & Counter-Measures

LockBit 2.0 doesn't succeed because organizations lack security tools. It succeeds when the last mile of hardening is left open. Learn how the ransomware operates and the practical counter-measures that close its favorite entry points.

Yakov Kogan
Yakov Kogan
Nov 23, 2023 | 5 min read

Legacy Windows Settings: An OS Security Time Bomb

Some of the riskiest Windows exposures aren't new threats at all. They're legacy settings that survived every upgrade. This post explains how to find and fix them safely.

Tal Kollender
Tal Kollender
Sep 11, 2023 | 7 min read
top-active-directory-threats-to-be-aware-of

Are You Effectively Managing the Top Active Directory Threats?

Managing Active Directory threats means more than spotting misconfigurations. Learn where AD exposure builds, how posture degrades over time, and how to close the gap with safe remediation.

Tal Kollender
Tal Kollender
Jul 12, 2021 | 6 min read
ntlm-security-dilemma

NTLM Security in a Cloud-First World: Why It’s Time to Let Go

NTLM still shows up in cloud-first environments more often than security teams would like, and that’s the problem. This legacy authentication protocol keeps extending the exposure gap between what you’ve modernized and what adversaries can still exploit. In this article, we break down why NTLM remains a stubborn source of risk, where it hides in real enterprise environments, and what operators can do to phase it out without creating operational chaos.

Mor Bikovsky
Mor Bikovsky
Aug 26, 2020 | 5 min read
stop-horizontal-privilege-escalation-simple-tip

How to Prevent Horizontal Privilege Escalation on Windows Endpoints

Stopping privilege escalation takes more than visibility. Learn how to harden endpoints, control configuration drift, and reduce the paths adversaries use to move laterally.

Tal Kollender
Tal Kollender
Aug 9, 2020 | 4 min read