Huntress today announced major enhancements to its Managed Identity Threat Detection and Response (ITDR) solution, delivering a purpose-built answer to disrupt hacker identity tradecraft. Alongside the launch, Huntress also revealed new research underscoring the growing threat of identity-based attacks and organisations’ struggles to defend against them.
Based on findings from an independent UserEvidence survey of over 600 IT and security professionals, the Huntress 2025 Managed ITDR Report: Identity Is the New Security Perimeter highlights concerning trends about the surge, impact, and difficulty in detecting identity attacks:
-
Identity-based attacks are increasing: 67% of organisations have seen a rise in identity-related incidents over the past three years, with more than a third (35%) reporting that such attacks made up over 40% of their security incidents in the past year.
-
Rogue applications are a major risk: 45% of respondents experienced rogue or malicious applications within the past year, with 46% citing them as a leading concern.
-
Detection and response remain too slow: 53% of organisations admit it takes hours to detect identity attacks, while 68% said they typically can’t respond until attackers have already established persistence.
-
The financial impact is steep: 32% of businesses that suffered identity-based incidents reported losses exceeding $100,000.
“There’s no denying identity is the new endpoint. With widespread cloud adoption, the shift to hybrid work, and an increased reliance on SaaS applications, the identity attack surface has exploded over the past few years,” said Prakash Ramamurthy, Chief Product Officer at Huntress. “Hackers are no longer wasting time breaking into networks the hard way. They’re logging in using stolen credentials, session cookies, and access tokens to bypass endpoint protection and exploit weak multi-factor authentication. Our Managed ITDR solution gives organisations the proactive detection and response they need to take control of their identity security posture before attackers do.”
Delivering “Always-On” Advanced Detection and Response
Currently safeguarding over 1.8 million identities, Huntress Managed ITDR has stopped 28,000 identity attacks in just the past six months. With an impressive three-minute mean time to respond (MTTR) and a low false positive rate, the solution thwarts phishing, Adversary-in-the-Middle (AitM) attacks, and full-scale account takeovers before they escalate.
Powered by newly introduced capabilities, Rogue Apps, Unwanted Access, and Shadow Workflows, Huntress dismantles the tactics cybercriminals rely on:
-
Rogue Apps: Huntress becomes the first vendor to offer proactive defence against OAuth application threats. Rogue Apps actively detects malicious or risky OAuth apps in Microsoft 365 environments, providing organisations with clear, actionable remediation steps.
-
Unwanted Access: By monitoring for unexpected login behaviours, anomalies related to location or VPN usage, and other suspicious activity, Unwanted Access detects session hijacking and credential theft, isolating compromised identities before damage occurs.
-
Shadow Workflows: Designed to counter business email compromise (BEC) and data theft, Shadow Workflows detects and alerts on malicious inbox rules and mail forwarding settings. Additional enhancements to detect outbound phishing campaigns are planned for Q2.
“Through our research, it became strikingly clear that the threat posed by malicious OAuth applications was far greater than initially anticipated,” said Matt Kiely, Principal Cybersecurity Researcher at Huntress. “That realisation drove us to develop the Rogue Apps capability to empower organisations to proactively detect and eliminate these threats. With this new capability, we’ve already analysed over 20 million OAuth applications across our customer base and have been able to pinpoint those most likely to be malicious with incredible precision. This allows us to shrink the proverbial haystack, quickly find malicious OAuth applications, and swiftly take action.”
Customer feedback has been equally enthusiastic. “Huntress Managed ITDR has been a game-changer for us. Not only is it priced in a way that actually works for our clients, but it’s also made managing their Microsoft 365 identities and email environments so much easier,” said Ryan Rowbottom, Director of IT Services at PCS. “The tool is super effective, and the team at Huntress keeps rolling out new capabilities like Rogue Apps to help us stay ahead of attackers. While I was initially sceptical because the price seemed almost too good to be true, I’ve been completely won over.”





