cyber-performing-active-directory-bloodhound-analysis - Performing Active Directory BloodHound Analysis
Use BloodHound and SharpHound to enumerate Active Directory relationships and identify attack paths from compromised users to Domain Admin.
Tags
Updated: 2026-09-20Capabilities
Typical Inputs
What this skill does
- Collect AD data using SharpHound
- Collect Azure AD data using AzureHound
- Import collection data into BloodHound
- Execute Cypher queries for attack paths
- Identify privilege escalation paths in AD
Inputs
- Domain credentials or domain-joined system
- Network access to domain controllers
- SharpHound collector binary or script
- Azure AD tenant ID and token
Outputs
- SharpHound ZIP data file
- Azure AD JSON data file
- BloodHound graph query results
Requirements
- BloodHound CE or BloodHound Legacy
- Neo4j or PostgreSQL database
- Docker environment for BloodHound CE
- Network connection to LDAP services
