For an Active Directory path mapper, the first results are adaptivethreat/bloodhound (BloodHound is the original open-source Active Directory attack path mapper, providing graph-based visualization, privilege escalation path detection, Cypher querying, and a GUI—exactly what this search is for), bloodhoundad/bloodhound (BloodHound is the quintessential open-source tool for mapping and analyzing Active Directory attack paths, offering graph-based visualization, privilege escalation path detection, Cypher query support, and a self-hostable GUI — exactly what this search is after) and specterops/bloodhound (BloodHound is the original open-source Active Directory attack path analysis tool itself, providing graph-based visualization, privilege escalation detection, and Cypher query support — exactly what this search is looking for). apache/age and vesoft-inc/nebula round out the shortlist. Compare the match explanations and check the project documentation against your requirements.
Open-source tools for mapping, visualizing, and identifying exploitable security relationships within Active Directory environments.
Bloodhound is an Active Directory attack path mapper and security auditor designed to visualize trust relationships and permission chains. It serves as an attack surface management tool that identifies paths to domain administrator and other high-privileged accounts. The project uses a graph database analyzer to map complex identity and access relationships. It quantifies the risk of privilege escalation by identifying misconfigured permissions and trust links within Windows domains. The system provides capabilities for Active Directory security analysis, identity and access auditing, and ne
BloodHound is the original open-source Active Directory attack path mapper, providing graph-based visualization, privilege escalation path detection, Cypher querying, and a GUI—exactly what this search is for.
BloodHound is a graph-based security analysis tool designed to map trust relationships and attack vectors within Active Directory environments. It functions as an attack path mapper and risk assessment system that uses graph theory to identify hidden relationships and paths leading to high-privilege accounts. The tool specializes in network attack surface mapping and privilege escalation pathfinding. It quantifies security risks by measuring the reliability of attack paths to critical targets, allowing for the prioritization of vulnerability elimination. The system provides capabilities for
BloodHound is the quintessential open-source tool for mapping and analyzing Active Directory attack paths, offering graph-based visualization, privilege escalation path detection, Cypher query support, and a self-hostable GUI — exactly what this search is after.
BloodHound is an identity risk management platform and graph-based attack path analyzer used to map identity relationships and permissions in Active Directory. It functions as a security tool for auditing directory services, uncovering unintended privilege relationships, and visualizing sequences of permissions that can lead to domain compromise. The project differentiates itself as a comprehensive adversary emulation framework that coordinates remote agents and executes post-exploitation commands. It includes a reverse proxy for bypassing multi-factor authentication via real-time session hij
BloodHound is the original open-source Active Directory attack path analysis tool itself, providing graph-based visualization, privilege escalation detection, and Cypher query support — exactly what this search is looking for.
Apache AGE is a graph database extension for PostgreSQL that adds openCypher graph query capabilities directly within the relational database environment. It functions as a loadable extension that translates Cypher graph traversal queries into SQL expressions, enabling users to run pattern matching and path analysis alongside standard SQL operations within a single database instance. The extension stores labeled, directed property graphs as isolated schemas with internal relational tables for vertices, edges, and labels, preventing cross-graph interference. It supports hybrid query execution
Apache AGE is a graph database extension for PostgreSQL that supports Cypher queries, which could be used as a storage and query layer for attack path data, but it is not a ready-to-use Active Directory attack path analysis tool—it lacks AD data collection, visualization, and privilege escalation detection.
Nebula is a distributed graph database designed for storing and querying massive volumes of interconnected vertices and edges across a horizontally scalable cluster. It functions as a Kubernetes-native database and a distributed graph analytics engine, utilizing a Raft-based distributed store to ensure strong consistency and high availability. The system features an OpenCypher query engine for performing complex graph traversals and pattern matching. It distinguishes itself with a decoupled compute-storage architecture and a shared-nothing distributed design, allowing query processing and dat
Nebula is a general-purpose distributed graph database, not an Active Directory attack path analysis tool — it lacks AD data collection, privilege escalation detection, and the domain-specific visualization that tools like BloodHound provide.
Monkey is an adversary emulation platform and breach and attack simulation tool designed to test network defenses through automated lateral movement and exploit delivery. It functions as a network security testing system that evaluates security posture by attempting to propagate through vulnerabilities and extract sensitive system credentials. The platform distinguishes itself by simulating specific real-world attacker behaviors, such as ransomware encryption, cryptojacking, and the theft of browser-stored credentials and secure shell keys. It utilizes binary hash randomization to evade antiv
Monkey is a general breach-and-attack simulation platform focused on lateral movement and exploit delivery, not a dedicated Active Directory attack path analysis tool like BloodHound.
| Repository | Stars | Language | License | Last push |
|---|---|---|---|---|
| adaptivethreat/bloodhound | 10.6K | PowerShell | GPL-3.0 | |
| bloodhoundad/bloodhound | 10.6K | PowerShell | GPL-3.0 | |
| specterops/bloodhound | 2.8K | Go | apache-2.0 | |
| apache/age | 4.2K | C | apache-2.0 | |
| vesoft-inc/nebula | 12.2K | C++ | Apache-2.0 | |
| guardicore/monkey | 7K | Python | GPL-3.0 |