SpecterOps, creator of BloodHound and leader in identity Attack Path Management, has announced new capabilities built to give defenders a dynamic understanding of how adversaries traverse their hybrid environment and the ability to proactively eliminate pathways before they can be abused. BloodHound Enterprise adds support for Amazon Web Services and Microsoft Entra Agent ID, expanding the reach of attack path management.
BloodHound Enterprise adds support for AWS and Microsoft Entra Agent ID, joining Okta, GitHub, Jamf, Active Directory, and Entra in a single attack graph.
BloodHound Hunter is a new purpose-built AI agent interface using Model Context Protocol to connect approved AI agents and knowledge sources to BloodHound Enterprise findings.
AWS extension surfaces traversable paths and pinpoints chokepoints to stop footholds from escalating into full-scale attacks.
Entra Agent ID extension extends attack path management to Microsoft Copilot agents and AI identities.
Customers can bring their own trusted AI agents and knowledge sources to BloodHound data for environment-specific evaluations.
SpecterOps will host workshops and talks at Black Hat Kennel Club with OpenAI and UK AI Safety Institute.
SpecterOps, creator of BloodHound and leader in identity Attack Path Management, today announced new capabilities built to give defenders a dynamic understanding of how adversaries traverse their hybrid environment and the ability to proactively eliminate pathways before they can be abused. BloodHound Enterprise adds support for Amazon Web Services and Microsoft Entra Agent ID, expanding the reach of attack path management. A new purpose-built AI agent interface, BloodHound Hunter, brings that same adversary intelligence into AI-assisted security workflows, letting teams incorporate the power of the attack path graph to address the risks that matter most to the business.
"Attackers do not move through isolated systems. They move through the relationships between them, chaining trust, permissions, and misconfigurations across cloud, identity, and infrastructure until they achieve their objectives," said Jared Atkinson, Chief Technology Officer at SpecterOps. "Through the growing library of BloodHound Enterprise extensions and new BloodHound Enterprise MCP, identity and security teams can trace and sever abusable pathways using each platform's native access logic and put that intelligence to work through their own trusted AI agents and workflows."
With BloodHound Hunter, customers can bring their own trusted AI agents and knowledge sources to BloodHound data, so findings are evaluated against their specific environment, controls, and priorities. Built natively into BloodHound Enterprise and leveraging the Model Context Protocol, BloodHound Hunter connects approved AI agents and knowledge sources directly to BloodHound Enterprise findings. Teams can prioritize remediation based on their specific environment, translate technical findings into language executives and identity teams can act on, and pinpoint key assets or enclaves to protect with Privilege Zones.
New capabilities include:
Add attack path intelligence to AI Workflows: BloodHound Hunter connects your approved AI agents and knowledge sources directly to BloodHound Enterprise findings, enabling teams to prioritize remediation based on their specific environment and translate technical findings into actionable language.
Map attack paths across hybrid environments: With AWS and Microsoft Entra Agent ID joining Okta, GitHub, Jamf, Active Directory, and Entra, BloodHound Enterprise resolves dangerous trust and identity relationships using a single attack graph spanning cloud, SaaS, code, AI, and on-premises systems.
Eliminate attack paths to critical assets within AWS: With native support for AWS, BloodHound Enterprise surfaces traversable paths and pinpoints the chokepoints that stop a foothold from escalating into a full-scale attack.
Evaluate AI agents and identities within the broader context of enterprise risk: The BloodHound Enterprise extension for Microsoft Entra Agent ID extends attack path management to Microsoft Copilot agents and AI identities, enabling investigation of how AI agents, delegated identities, service principals, and administrative permissions create indirect paths to privileged access.
These capabilities also extend the value of BloodHound Scentry, which pairs SpecterOps tradecraft expertise with BloodHound Enterprise to accelerate identity attack path management maturity.
Join the SpecterOps team at our Black Hat Kennel Club for live workshops, demos, and exclusive talks from SpecterOps, OpenAI, and the UK AI Safety Institute.
About SpecterOps
SpecterOps is the creator of BloodHound and the leader in identity Attack Path Management. Possessing deep knowledge of adversary tradecraft, the company enables organizations to understand their identity risk across AI and hybrid environments and proactively eliminate critical attack paths before they can be abused. SpecterOps is a trusted partner for leading AI companies, its offensive security services are leveraged by the largest enterprises and government agencies, and BloodHound has been recommended by the U.S. Department of Homeland Security, PricewaterhouseCoopers and many others.