This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can be mitigated or detected.
-
Updated
Jun 30, 2026 - PowerShell
This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can be mitigated or detected.
Mantissa Log is an open-source and cost-transparent engine that uses a natural language interface to "Ask Questions. Detect Threats. Trace Performance. Automate Responses."
ITDR (Identity Threat Detection and Response) platform with ML-powered anomaly detection, UEBA, risk scoring, and role mining
Identity Threat Detection and Response (ITDR) platform built using Python, FastAPI, Apache Kafka, Docker, and Neo4j.
Open-source identity containment validation. Prove revoked credentials and sessions actually lose access within an SLO.
Astrix Security is a non-human identity (NHI) and AI agent security platform. It gives enterprises a real-time inventory of every AI agent, MCP server, service account, OAuth app, API key, SSH key and IAM role across their environment, then detects excessive privileges, misconfigurations, anomalous activity and policy violations and drives…
Closed-loop identity threat detection and response: CrowdStrike Falcon Identity Protection driving automated governance actions in Saviynt IGA
Provider-agnostic Identity Threat Detection & Response (ITDR) platform with real-time detection, automated multi-provider containment, a fail-open SDK, and tamper-evident cryptographic audit trails.
Valence Security is the leader in SaaS and AI Security, built for the agentic era. The platform provides SaaS security posture management (SSPM), AI security posture management (AI-SPM), identity threat detection and response (ITDR), and risk remediation across 175+ SaaS and AI applications including Microsoft 365, Google Workspace, Salesforce…
Wing Security is an AI security platform providing automated discovery, risk assessment, and governance of AI agents, SaaS applications, and app-to-app integrations. The platform delivers SaaS Security Posture Management (SSPM), Identity Threat Detection and Response (ITDR), and continuous observability for AI tools across enterprise environments.
Attivo Networks was a pioneer in identity threat detection and response (ITDR), cyber deception, and Active Directory attack protection. SentinelOne acquired Attivo Networks in 2022 and folded its technology into SentinelOne Singularity Identity, part of the AI-powered Singularity security platform spanning endpoint (EDR/XDR), identity, and cloud…
Add a description, image, and links to the itdr topic page so that developers can more easily learn about it.
To associate your repository with the itdr topic, visit your repo's landing page and select "manage topics."