-

SpecterOps Launches BloodHound Enterprise to Improve Active Directory Security for the Enterprise

New Attack Path Management solution from the creators of the open-source tool BloodHound enables organizations to quickly eliminate and manage critical Active Directory Attack Paths

SEATTLE--(BUSINESS WIRE)--SpecterOps, a provider of adversary-focused cybersecurity solutions and the creators of the free and open-source penetration testing tool BloodHound, today announced BloodHound Enterprise, an Attack Path Management (APM) security solution for Active Directory (AD). Designed to help organizations proactively and continuously identify, manage and remediate millions of AD Attack Paths, BloodHound Enterprise gives IT Ops and SecOps professionals the tools needed to dramatically and measurably improve AD security posture with minimal effort.

As a largely unseen, unmanaged and growing problem for enterprises, AD Attack Paths are used by attackers to gain control of systems and data, impersonate users, abuse legitimate access to non-AD systems and much more. This problem is compounded by mountains of misconfiguration debt in AD, making it difficult to create a strong security posture for AD security. Until BloodHound Enterprise there has not been a practical defensive tool that identifies and quantifies AD choke points, eliminating Active Directory as an attacker’s easiest, most reliable and biggest payoff target.

“Traditional approaches to AD security generate massive lists of generic misconfigurations and poor user behaviors that overwhelm teams and are generally impossible to resolve,” said David McGuire, CEO at SpecterOps. “In contrast, BloodHound Enterprise continuously identifies the critical Attack Path 'choke points' for elimination, visually illustrates the Attack Paths for contextual understanding, and prioritizes which Attack Paths to eliminate based on actual risk.”

Microsoft AD provides identity and access management, endpoint management and business application management. It is an extremely high-value target for attackers because it is widely used and because it offers features that can give attackers the “keys to the kingdom” if compromised. Attack Paths are chains of abusable privileges and user behaviors that create direct and indirect connections between computers and users within AD. Once an attacker compromises a system or device, they can use the privileges of those users to compromise other systems or devices until they reach their final objective. AD controls which users have access to which systems, so configuring AD correctly can close off these Attack Paths – if the organization is aware they exist.

Active Directory best practices such as least privilege access and tiered administration are almost never implemented correctly or at all, and Attack Paths are too numerous and dynamic for reactive security measures to be effective. BloodHound Enterprise solves these problems with:

  • Rapid, centralized cloud deployment in under an hour that allows IT Ops and SecOps teams to deploy across corporate and subsidiary locations to understand Attack Path risk quickly.
  • Continuous, comprehensive Attack Path mapping that enumerates every possible path and highlights new paths introduced through configuration changes and user behaviors.
  • Attack Path Choke Point identification with analysis of impact that allows teams to better prioritize remediation.
  • Practical, precise and safe remediation guidance that leads teams through remediations step-by-step to sever Attack Paths without significant architecture revisions and avoiding disruptions to business operations.
  • Quantifiable security posture improvement with the ability to report on Attack Path exposure of high value targets.

BloodHound Enterprise is distinct from BloodHound FOSS and SpecterOps remains fully committed to supporting BloodHound FOSS.

For more detailed product information on BloodHound Enterprise, or to receive a demo, click here.

About SpecterOps

SpecterOps is a provider of adversary-focused cybersecurity solutions and is the creator of the BloodHound free and open-source penetration testing solution, which maps relationships in an Active Directory environment. BloodHound has been recommended by the Department of Homeland Security, PricewaterhouseCoopers and many more. BloodHound Enterprise is the company’s first defense solution for enterprise SOC teams and defenders. For more information on the company and its solutions, visit https://specterops.io/.

Contacts

Media Contact
Austin Williams
Voxus PR for SpecterOps
awilliams@voxuspr.com
253-441-0154

SpecterOps

Details
Headquarters: Alexandria, VA
CEO: David McGuire
Employees: 150-200
Organization: PRI

Release Summary
SpecterOps launches BloodHound Enterprise to improve Active Directory security for the enterprise.
Release Versions

Contacts

Media Contact
Austin Williams
Voxus PR for SpecterOps
awilliams@voxuspr.com
253-441-0154

More News From SpecterOps

SpecterOps and Tines Partner to Automate Attack Path Management with Native BloodHound Integration

ALEXANDRIA, Va.--(BUSINESS WIRE)--SpecterOps, creator of BloodHound and the pioneer of Attack Path Management, today announced a strategic partnership with Tines, the leader in intelligent workflows. This partnership introduces a native BloodHound integration to Tines, enabling customers to operationalize their Attack Path Management through intelligent workflows that combine automation, AI, and human decision-making. This partnership combines SpecterOps’ identity Attack Path Management capabil...

SpecterOps Expands the Power of Attack Path Management to Reduce Identity Risk Across the Enterprise with BloodHound OpenGraph and v8.0

ALEXANDRIA, Va.--(BUSINESS WIRE)--SpecterOps, the leader in identity risk management and adversary tradecraft, today announced BloodHound v8.0, the latest version of its industry-leading open-source Attack Path Management security platform. BloodHound v8.0 includes significant product expansions and enrichments for both the BloodHound Community Edition open-source tool and the BloodHound Enterprise platform. This release introduces BloodHound OpenGraph, which revolutionizes the practice of Iden...

SpecterOps Launches Privilege Zones in BloodHound Enterprise to Protect Mission-Critical Assets From Identity Compromise

ALEXANDRIA, Va.--(BUSINESS WIRE)--SpecterOps, the leader in identity risk management and adversary tradecraft, today introduced Privilege Zones, a new addition to its flagship BloodHound Enterprise platform. Privilege Zones enable teams to define custom security boundaries around business-critical resources and enforce least privilege access continuously in on-prem, cloud and hybrid environments. IT and security teams go to great lengths to configure identity properly, but the sheer magnitude a...
Back to Newsroom