Threat actors have proven that they can evade security controls to establish a beachhead inside an organization’s network. Once inside, Active Directory (AD) is one of the most common targets they go after since it provides authentication and authorization to all enterprise resources. Attackers exploit AD exposures and misconfigurations to steal the required information they need to gain privileged access and find targets to attack.