logo

For SANS Critical Controls: Authentication Missing In Action

ID: d034ccee-941e-5d50-a609-92ef4f4cc05e

STIX ID: report--d034ccee-941e-5d50-a609-92ef4f4cc05e

Feed Name: Security Ledger

Date Published: 2013-11-07

Date Updated: 2026-04-26

Author: Mark Stanislav

...
...

The article argues that authentication deserves its own explicit control within the SANS 20 Critical Security Controls, contending that current guidance gives authentication short shrift despite widespread credential theft and the growing importance of authentication in cloud environments; it cites examples such as Mandiant's findings about valid credential use in APT breaches and the Adobe password theft to justify stronger emphasis on authentication and multi-factor protections.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.