
BloodHound 是一个单体 Web 应用程序,由嵌入的 React 前端(使用 Sigma.js)和基于 Go 的 REST API 后端组成。它部署了 Postgresql 应用数据库和 Neo4j 图数据库,并由 SharpHound 和 AzureHound 数据收集器提供数据。
BloodHound 利用图论揭示身份和访问管理系统中隐藏且通常非预期的关系。由 OpenGraph 驱动,BloodHound 现已支持超越 Active Directory 和 Azure 环境的全面分析,使用户能够映射跨多种身份平台的复杂权限关系。攻击者可以利用 BloodHound 快速发现手工无法识别的复杂攻击路径,而防御者可以主动识别并缓解这些风险。红蓝双方均受益于 BloodHound 的扩展能力,在其整个安全格局中获得对身份和权限结构的更深入洞察。
BloodHound CE 由 SpecterOps 团队创建和维护,该团队还为您带来了 BloodHound Enterprise。最初的 BloodHound 由 @_wald0、@CptJesus 和 @harmj0y 创建。
请参考 BloodHound 社区版快速入门指南,该指南是 BloodHound 文档 的一部分。
请查看我们 Wiki 中的联系页面,了解如何提出问题和建议。
Copyright 2025 Specter Ops, Inc.
Licensed under the Apache License, Version 2.0
you may not use this file except in compliance with the License.
You may obtain a copy of the License at
http://www.apache.org/licenses/LICENSE-2.0
Unless required by applicable law or agreed to in writing, software
distributed under the License is distributed on an "AS IS" BASIS,
WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
See the License for the specific language governing permissions and
limitations under the License.
除非更低级别的 LICENSE 文件或许可证头另有注明,否则本仓库中的所有文件均根据 Apache-2.0 许可证发布。许可证全文可在顶级 LICENSE 文件中找到。