Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Wednesday, 3 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

One Identity Report Highlights

“Pass the Hash” Attack Prevalence, Impact and Uncertainty

by The Gurus
November 7, 2019
in Editor's News, Guru's Picks
Risk Management
Share on FacebookShare on Twitter

One Identity, the identity-centered security specialist, has released new global research, conducted by Dimensional Research, revealing the significant prevalence and impact of cyberattacks that use stolen hashed administrator credentials, also referred to as Pass the Hash (PtH) attacks. Among the survey’s most noteworthy findings is that 95% of respondents say that PtH attacks have a direct business impact on their organisations. The study of more than 1,000 global IT professionals reinforces the crucial need for organisations to deploy effective Active Directory (AD) management and privileged access management (PAM) solutions and practices, given that PtH attacks primarily result in unauthorised use of privileged credentials to compromise enterprise systems and data.

Pass the Hash explained

In a typical PtH attack, an attacker obtains privileged credentials by compromising an end user’s machine and simulates an IT problem so that a privileged account holder will log into an administrative system. Those login credentials are stored as a hash that the attacker extracts and uses to access additional IT resources across the organisation. Without a holistic and strategic approach to protect privileged accounts and identify when privileged access is being abused, a cybercriminal leveraging a PtH technique can gain access to an entire network, rendering all other security safeguards ineffective.

The Study broken down:

According to One Identity’s survey, IT security stakeholders recognise the damage PtH attacks can cause, however, many are still not implementing the most important measures available to fight them. Additional top findings from the report include:

  • PtH incidents have a widespread, direct impact on businesses.
    • Two in five (40%) say a PtH incident has a direct financial impact, such as lost revenue and fines.
    • Seventy percent report a direct impact on operational costs.
    • Sixty-eight percent say these attacks distract staff from other projects.

  • Ignorance of PtH attacks is worryingly prevalent for the majority of organisations.  
    • Sixty-eight percent of IT security stakeholders do not know for certain whether they’ve experienced a PtH attack.
    • Four percent of IT security stakeholders do not even know what a PtH attack is.

  • A large majority (87%) of respondents say they are already taking steps to prevent PtH attacks, but some lack of attention to address the issue persists.
    • Fifty-five percent have implemented privileged password management (a password vault).
    • Fifty percent have implemented better controls over AD/Azure AD administrator access.
    • Thirty-two percent have implemented advanced PAM practices such as session audit and analytics.
    • Twenty-six percent have followed Microsoft’s guidance and implemented an Enhanced Security Administrative Environment (ESAE, also known as Red Forest).
    • Among the respondents that have not taken any steps to prevent PtH, 85% have no plans to do so.

  • Larger companies feel they are more likely to be targeted by PtH attacks and are most likely to take steps to address the issue.
    • More than one in four (26%) large companies (defined as organisations with more than 5,000 employees) report they have definitely or probably experienced this type of attack, compared to about one in 10 (12%) smaller companies.
    • Twice as many large companies (38%) have invested in advanced PAM practices such as session audit and analytics compared to smaller organisations (19%).
    • Fifty-nine percent of large companies are implementing privileged password management (a password vault) vs. only 44% of smaller companies.
    • ○      Only 16% of small organisations are following Microsoft’s guidance to implement ESAE (Red Forest) compared to 31% of large companies.

“The results of our 2019 survey indicate that despite the fact that Pass the Hash attacks are having significant financial and operational impact on organisations, there is vast room for improvement in the steps organisations are taking to address them,” said Darrell Long, vice president of product management, One Identity. “Without a holistic and strategic approach to protect privileged accounts and identify privileged access abuse, organisations could very well leave their entire network exposed to cybercriminals leveraging the PtH technique, rendering all other security safeguards ineffective.”

Effective PAM and AD-focused IAM are critical components in any organisation’s security strategy; but the 2019 State of Identity and Access Management study shows businesses are still struggling to implement best practices.

One Identity can help organisations eliminate their biggest IAM and PAM challenges. its Active Roles solution controls and automates AD permissions to protect the directory by constantly evaluating admin permissions and proxying changes on behalf of the admin, enabling delegation of exactly the right permission at a much more granular level than native tools. The industry-leading One Identity Safeguard PAM solution combines a secured and hardened password safe, a session-management and -monitoring solution, and threat detection and analytics to help organisations securely store, manage, record and analyse privileged access.

About the 2019 One Identity State of Identity and Access Management Study

Conducted by Dimensional Research, One Identity’s “2019 State of Identity and Access Management” study surveyed 1,005 IT security professionals from midsize to large enterprises on their current experiences, trends and approaches to Identity Governance and Administration (IGA), PAM and Identity SaaS. The study consisted of an online survey of IT professionals in midsize to large organisations with responsibility for security and who are very knowledgeable about IAM and privileged accounts. A total of 1,005 individuals from the U.S., Canada, U.K., Germany, France, Australia, Singapore and Hong Kong completed the survey.

One Identity offers a free online executive summary of the data as well as a Key Findings Report.

Share8Tweet
Previous Post

Global 1000 Enterprises are Set to Benefit Significantly from Industry-Defining Cybersecurity Collaboration

Next Post

Information stolen and sold from prostitution forums

Recent News

Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026
Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

May 29, 2026
Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

May 28, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol