April, 2026
External attack surface management often suffers from a noise problem, reporting every legacy leak associated with your domain, regardless of whether that user still works at your company.
We are excited to announce a new integration between Lumu Discover and Microsoft Entra ID. By correlating external threat data with your active employees, Lumu Discover now provides:
- Precision Filtering: remove noisy data from old dark web breaches or former employees by filtering detections against your current active directory.
- Identify Security Gaps: cross-reference external leaks with internal account status to identify compromised users who have MFA disabled or active email forwarding rules.
- Automated Risk-Mapping: attribute Infostealer infections and credential leaks to specific users for prioritized remediation.
- Continuous Updating: maintain a live view of exposure for every active employee without the need for manual imports.
To learn more about this feature, access our documentation here.



