awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com

Active Directory Attack Path Analysis

Ranking updated Jun 30, 2026

For an Active Directory path mapper, the first results are adaptivethreat/bloodhound (BloodHound is the original open-source Active Directory attack path mapper, providing graph-based visualization, privilege escalation path detection, Cypher querying, and a GUI—exactly what this search is for), bloodhoundad/bloodhound (BloodHound is the quintessential open-source tool for mapping and analyzing Active Directory attack paths, offering graph-based visualization, privilege escalation path detection, Cypher query support, and a self-hostable GUI — exactly what this search is after) and specterops/bloodhound (BloodHound is the original open-source Active Directory attack path analysis tool itself, providing graph-based visualization, privilege escalation detection, and Cypher query support — exactly what this search is looking for). apache/age and vesoft-inc/nebula round out the shortlist. Compare the match explanations and check the project documentation against your requirements.

Open-source tools for mapping, visualizing, and identifying exploitable security relationships within Active Directory environments.

Active Directory Attack Path Analysis

Find the best repos with AI.We'll search the best matching repositories with AI.
  • adaptivethreat/bloodhoundadaptivethreat avatar

    adaptivethreat/Bloodhound

    10,552View on GitHub↗

    Bloodhound is an Active Directory attack path mapper and security auditor designed to visualize trust relationships and permission chains. It serves as an attack surface management tool that identifies paths to domain administrator and other high-privileged accounts. The project uses a graph database analyzer to map complex identity and access relationships. It quantifies the risk of privilege escalation by identifying misconfigured permissions and trust links within Windows domains. The system provides capabilities for Active Directory security analysis, identity and access auditing, and ne

    BloodHound is the original open-source Active Directory attack path mapper, providing graph-based visualization, privilege escalation path detection, Cypher querying, and a GUI—exactly what this search is for.

    PowerShellAttack Path GraphsAttack Path MappersAttack Path Visualizations
    View on GitHub↗10,552
  • bloodhoundad/bloodhoundBloodHoundAD avatar

    BloodHoundAD/BloodHound

    10,552View on GitHub↗

    BloodHound is a graph-based security analysis tool designed to map trust relationships and attack vectors within Active Directory environments. It functions as an attack path mapper and risk assessment system that uses graph theory to identify hidden relationships and paths leading to high-privilege accounts. The tool specializes in network attack surface mapping and privilege escalation pathfinding. It quantifies security risks by measuring the reliability of attack paths to critical targets, allowing for the prioritization of vulnerability elimination. The system provides capabilities for

    BloodHound is the quintessential open-source tool for mapping and analyzing Active Directory attack paths, offering graph-based visualization, privilege escalation path detection, Cypher query support, and a self-hostable GUI — exactly what this search is after.

    PowerShellAttack Path GraphsAttack Path MappersAttack Path Visualizations
    View on GitHub↗10,552
  • specterops/bloodhoundSpecterOps avatar

    SpecterOps/BloodHound

    2,789View on GitHub↗

    BloodHound is an identity risk management platform and graph-based attack path analyzer used to map identity relationships and permissions in Active Directory. It functions as a security tool for auditing directory services, uncovering unintended privilege relationships, and visualizing sequences of permissions that can lead to domain compromise. The project differentiates itself as a comprehensive adversary emulation framework that coordinates remote agents and executes post-exploitation commands. It includes a reverse proxy for bypassing multi-factor authentication via real-time session hij

    BloodHound is the original open-source Active Directory attack path analysis tool itself, providing graph-based visualization, privilege escalation detection, and Cypher query support — exactly what this search is looking for.

    GoAttack Path AnalysisAttack Path GraphsAttack Path Visualizations
    View on GitHub↗2,789
  • apache/ageapache avatar

    apache/age

    4,236View on GitHub↗

    Apache AGE is a graph database extension for PostgreSQL that adds openCypher graph query capabilities directly within the relational database environment. It functions as a loadable extension that translates Cypher graph traversal queries into SQL expressions, enabling users to run pattern matching and path analysis alongside standard SQL operations within a single database instance. The extension stores labeled, directed property graphs as isolated schemas with internal relational tables for vertices, edges, and labels, preventing cross-graph interference. It supports hybrid query execution

    Apache AGE is a graph database extension for PostgreSQL that supports Cypher queries, which could be used as a storage and query layer for attack path data, but it is not a ready-to-use Active Directory attack path analysis tool—it lacks AD data collection, visualization, and privilege escalation detection.

    CCypher EnginesCypher Query Translation
    View on GitHub↗4,236
  • vesoft-inc/nebulavesoft-inc avatar

    vesoft-inc/nebula

    12,239View on GitHub↗

    Nebula is a distributed graph database designed for storing and querying massive volumes of interconnected vertices and edges across a horizontally scalable cluster. It functions as a Kubernetes-native database and a distributed graph analytics engine, utilizing a Raft-based distributed store to ensure strong consistency and high availability. The system features an OpenCypher query engine for performing complex graph traversals and pattern matching. It distinguishes itself with a decoupled compute-storage architecture and a shared-nothing distributed design, allowing query processing and dat

    Nebula is a general-purpose distributed graph database, not an Active Directory attack path analysis tool — it lacks AD data collection, privilege escalation detection, and the domain-specific visualization that tools like BloodHound provide.

    C++Cypher Engines
    View on GitHub↗12,239
  • guardicore/monkeyguardicore avatar

    guardicore/monkey

    7,014View on GitHub↗

    Monkey is an adversary emulation platform and breach and attack simulation tool designed to test network defenses through automated lateral movement and exploit delivery. It functions as a network security testing system that evaluates security posture by attempting to propagate through vulnerabilities and extract sensitive system credentials. The platform distinguishes itself by simulating specific real-world attacker behaviors, such as ransomware encryption, cryptojacking, and the theft of browser-stored credentials and secure shell keys. It utilizes binary hash randomization to evade antiv

    Monkey is a general breach-and-attack simulation platform focused on lateral movement and exploit delivery, not a dedicated Active Directory attack path analysis tool like BloodHound.

    PythonAttack Path Visualizations
    View on GitHub↗7,014
Compare the top 10 at a glance
RepositoryStarsLanguageLicenseLast push
adaptivethreat/bloodhound10.6KPowerShellGPL-3.0Mar 2, 2026
bloodhoundad/bloodhound10.6KPowerShellGPL-3.0Mar 2, 2026
specterops/bloodhound2.8KGoapache-2.0Feb 19, 2026
apache/age4.2KCapache-2.0Feb 16, 2026
vesoft-inc/nebula12.2KC++Apache-2.0May 18, 2026
guardicore/monkey7KPythonGPL-3.0May 1, 2025

Related searches

  • an Active Directory attack toolkit
  • a post-exploitation toolkit
  • a privilege escalation enumeration tool
  • an adversary emulation toolkit
  • an osint toolkit for reconnaissance and enumeration
  • a tool for subdomain enumeration and reconnaissance
  • an SMB and LDAP enumeration tool
  • an open source penetration testing framework