Roei Sherman

Roei Sherman

Senior Director, Mitiga Research

Roei Sherman brings over a decade of experience in adversarial cybersecurity roles, with deep expertise in Red Team operations and applying an adversarial mindset to defensive strategy. His work spans technical Red Team engagements, social engineering, physical security, deception, and incident response across diverse platforms. Roei believes in thinking like a bad guy — which is perfectly fine, as long as you don’t start doing HR’s job too.

Breaking Down the Microsoft Entra ID Actor Token Vulnerability: The Perfect Crime in the Cloud

Heading

When we think about catastrophic vulnerabilities in the cloud, we usually imagine complex exploits that require advanced techniques, persistence, or luck. Sometimes a single flaw breaks the trust we put in our identity providers.

September 18, 2025

The Rising Threat of Adversarial AI Attackses: Preparing for the Next Wave of Cloud and SaaS Attacks

Heading

Learn about the rising threat of AI-enabled adversaries, uncover how vulnerabilities are exploited, and discover strategies to protect your digital assets now.

January 30, 2025

10 Strategies to Communicate Cloud Security Gaps to Leadership

Heading

Read actionable strategies to communicate cloud security gaps and recommendations to leadership.

January 13, 2025

5 Tips to Address the Cybersecurity Skills Gap

Heading

Cybersecurity leaders face challenges with the ongoing skills gap. Learn five strategies and tips to address these challenges.

January 8, 2025

IaaS vs PaaS vs SaaS: What Are the Differences?

Heading

Learn the different methods businesses use to build, manage, and scale digital infrastructure.

January 6, 2025

5 Common Threat Actor Tactics Used in Cloud, Identity, and SaaS Attacks

Heading

Explore five common tactics used in cloud attacks and recommendations on how to defend against them.

December 5, 2024

National Cybersecurity Awareness Month Recommendations

Heading

Explore strategies and examples of how to handle cloud security incidents when prevention isn’t enough.

October 30, 2024

Why Cloud Threats in Healthcare are Surging and How to Combat Them

Heading

The healthcare industry is having an increasingly challenging time when it comes to cyber security.

July 27, 2024

How Behavioral Detections Aid Healthcare Security

Heading

Healthcare organizations face unique cybersecurity challenges due to their hybrid IT (information technology) environments, sensitive data, and resource constraints.

July 22, 2024