Forest Druid

Malware updated a month ago (2024-11-29T13:50:50.092Z)
Download STIX
Preview STIX
Forest Druid is a malware that aids in visual mapping of risky access to privileged accounts. Developed by Semperis, an identity-driven cyber resilience solutions provider, Forest Druid has recently expanded its capabilities to include support for Microsoft Entra ID (formerly Azure AD). This expansion was announced during the week of October 13, 2023, and it aims to streamline the process for cybersecurity teams in identifying and closing risky attack paths across hybrid identity systems, thereby improving overall cyber defense. The integration of Microsoft Entra ID into Forest Druid comes on the heels of Semperis' recent announcement of support for Okta in Purple Knight, a popular vulnerability assessment tool downloaded by over 20,000 organizations. This addition underscores Semperis' mission to help organizations address emerging threats against both on-premises Active Directory (AD) and cloud identity systems. The goal is to better combat cybersecurity threats by providing comprehensive protection against potential breaches in on-premises Active Directory and cloud systems. Enhancements to Forest Druid include new settings to control data collection from on-premises and cloud identity systems, as well as new controls to improve the defense perimeter relationship graph. This graph serves as a map of objects with privileged relationships to Tier 0 assets. By identifying the true Tier 0 perimeter and prioritizing sensitive accounts for remediation, Forest Druid allows cybersecurity teams to save valuable time and resources while effectively safeguarding their identity systems against potential attacks.
Description last updated: 2024-05-04T16:38:25.711Z
Aliases We are not currently tracking any aliases
Miscellaneous Associations
Other elements of context that could aid in the identification of relevance
Analyst Notes & Discussion
Be the first to leave your mark here! Log in to share your views and vote.