1. [CVE-2026-15409] UK Council Attack Linked to SonicWall SMA 1000 Campaign vulnerability | 2026-09-10 00:00 | CVE-2026-15409 | hunt.io | original ↗ | #incident-response | #threat-intelligence | #active-directory
2. Introducing Migrator 2.0: Move Active Directory with Confidence blog | 2026-09-09 15:35 | semperis.com | original ↗ | #active-directory | #identity-security | #migration
3. NetSPI/AD-PathFinder: Attack path mapping for Active Directory, ADCS, SCCM, and MSSQL using BloodHound CE + OpenGraph data tool | 2026-09-02 23:54 | github.com | original ↗ | #pentesting | #open-source | #active-directory
4. Identity Crisis: Novel Vulnerabilities Leading to Kerberos Downgrade, DoS, and Full Domain Takeover research | 2026-08-05 22:35 | semperis.com | original ↗ | #active-directory | #denial-of-service | #privilege-escalation
5. A Millisecond of Predictability: Why CVE-2026-11374 Is Hard to Exploit vulnerability | Critical | 2026-07-21 00:00 | CVE-2026-11374 | bishopfox.com | original ↗ | #featured | #vulnerability-research | #account-takeover
6. AD Group Risks: Hidden Dangers in Backup Operators blog | 2026-07-28 16:40 | semperis.com | original ↗ | #active-directory | #backup-security | #privilege-escalation
7. The Minimum Viable Company Part 3: Enabling Visibility, Control, and Operational Resilience blog | 2026-07-21 22:28 | semperis.com | original ↗ | #incident-response | #active-directory | #cyber-resilience
8. Should I Domain Join Backup Servers? blog | 2026-07-19 08:06 | projectblack.io | original ↗ | #active-directory | #backup-security | #ransomware
9. Windows Privilege Abuse: How Attackers Escalate from Accounts with Dangerous Rights to Active Directory Compromise research | 2026-07-06 18:15 | semperis.com | original ↗ | #active-directory | #privilege-escalation | #identity-security
10. Practice Checkpoint 1: Building Agent ID with MS Graph blog | 2026-06-30 22:59 | semperis.com | original ↗ | #agentic-ai | #active-directory | #entra-id
11. A user account restriction (for example, a time-of-day restriction) is preventing you from logging on. For assistance, contact your system administrator or technical support. research | 2026-06-27 07:39 | projectblack.io | original ↗ | #active-directory | #kerberos | #windows-security
12. The Taxonomy of Workload Identities in Entra ID: Service Principals, Enterprise Applications, and Other Forms of Organized Confusion blog | 2026-06-27 01:41 | semperis.com | original ↗ | #agentic-ai | #active-directory | #entra-id
13. Meet Entra ID Agent Identities (BTW: They’re Not People) blog | 2026-06-27 01:35 | semperis.com | original ↗ | #agentic-ai | #active-directory | #identity-security
14. Understanding and Preventing Entra ID Agent Identity Attacks: A Comprehensive Guide blog | 2026-06-27 01:23 | semperis.com | original ↗ | #agentic-ai | #active-directory | #identity-security
15. When the Lights Go Out: What the Foxconn Breach Tells Us About Identity-First Ransomware incident | 2026-06-19 14:59 | semperis.com | original ↗ | #incident-response | #active-directory | #ransomware
16. When EPA isn't EPA'ing: What Tools Like Certify, Certipy and checkMSSQLStatus.py miss blog | 2026-06-24 00:00 | abdulmhsblog.com | original ↗ | #ai-security | #active-directory | #penetration-testing
17. Bringing Identity Context Into the Microsoft Security Workflow: Semperis’ Integration with Sentinel and Copilot blog | 2026-06-23 12:19 | semperis.com | original ↗ | #cloud | #incident-response | #threat-detection
18. 11 Real-World Risks Hidden in Active Directory Migrations blog | 2026-06-12 17:07 | semperis.com | original ↗ | #attack-chains | #active-directory | #privilege-escalation
19. Zero Trust vs Breach Prevention: What’s Your Identity Security Objective? blog | 2026-06-04 11:00 | semperis.com | original ↗ | #vulnerability-management | #active-directory | #entra-id
20. RC4 and AD Migration: Uncover the Break Scenarios Hiding in Your Source Domain blog | 2026-05-29 17:20 | semperis.com | original ↗ | #active-directory | #kerberos | #windows-security
21. Remove SPNs and Fix Kerberoasting research | 2026-05-24 05:55 | projectblack.io | original ↗ | #remediation | #active-directory | #privilege-escalation
22. Implementing Impacket's Newest Protocol: MS-RAA blog | 2026-05-27 00:00 | abdulmhsblog.com | original ↗ | #pentesting | #active-directory | #windows
23. Dissecting Impacket for Good and Bad blog | 2026-05-10 00:00 | abdulmhsblog.com | original ↗ | #active-directory | #kerberos | #smb
24. Identity Resilience Checklist: 6 Ways to Think Beyond Backup blog | 2026-05-04 19:56 | semperis.com | original ↗ | #incident-response | #active-directory | #disaster-recovery
25. Fixing ESC4 - User has dangerous permissions research | 2026-04-30 23:32 | projectblack.io | original ↗ | #remediation | #active-directory | #hardening
26. Thinking in Graphs with IPAHound research | 2026-04-30 09:01 | swarm.ptsecurity.com | original ↗ | #attack-chains | #active-directory | #red-team
27. Auditing Application Permissions in Microsoft Entra ID: Hidden Risks, Pitfalls, and Quarkslab's QAZPT Tool research | 2026-04-29 22:00 | blog.quarkslab.com | original ↗ | #cloud-security | #active-directory | #entra-id
28. A Pentesters Worst Nightmare: When Your Toolkit Breaks blog | 2026-04-23 00:00 | abdulmhsblog.com | original ↗ | #pentesting | #active-directory | #penetration-testing
29. Beyond the Perimeter How an On-Premises Domain Admin Compromise Unlocked the Cloud research | 2026-04-17 11:55 | labs.cognisys.group | original ↗ | #cloud | #cloud-security | #active-directory
30. Fixing ESC8 - Web Enrollment is enabled over HTTP and HTTPS, and Channel Binding is disabled research | 2026-04-06 10:59 | projectblack.io | original ↗ | #ai-security | #active-directory | #hardening