Exploit Hound: attack paths and identity exposure
For the analyst who reads Exploit Hound's exposure graph and connects a customer's directories: how findings become nodes and edges, how routes are labelled by the evidence behind each hop, choke points, the read-only Active Directory assessment and the written authorization it needs, Entra ID / Microsoft 365 and Google Workspace reads with gaps reported as unassessed, hybrid identity paths, the cloud escalation routes the site describes, and how to talk about a path without calling it an attack.
- Level
- Advanced
- Length
- About 50 minutes
- Contents
- 3 lessons · 1 video · final exam
- Status
- Published · updated 2 Oct 2026
- Exploit Hound
Skills you'll practise
- Explain how Exploit Hound turns assets, accounts, services and reachability into a graph of potential routes
- Read a path's hop evidence and confidence and identify the choke point to fix
- Prepare an Active Directory or Entra ID assessment with the right authorization, a read-only account and read-only consent
- Interpret identity findings and unassessed areas and report them accurately
- Describe a potential path to a customer without claiming exploitation or compromise
Course outline
- 1.Exploit Hound: attack paths and identity exposureVideo · 2 min
- 2.From findings to routesLesson · 17 min
- 3.Identity in the graph: Active DirectoryLesson · 16 min
- 4.Entra ID, Google Workspace and cloudLesson · 17 min
- 5.Exploit Hound: attack paths and identity exposure: knowledge checkKnowledge check · 15 questions
- 6.Final exam7 questions · passing it completes the course, so people who already know the material can test out
Sources it draws on
The lessons and questions are written from these references, so learners can go back to the original.
- Exploit Hound: Attack path management
- Exploit Hound: platform overview (architecture, scoring, attack paths, identity, ticketing, alerting, verification, exceptions)
- Exploit Hound: Identity exposure management
- Exploit Hound: What we scan (collection methods, what each needs and cannot determine)
- Exploit Hound: Resources and FAQ (terminology, how the risk score is built)
- Exploit Hound: Product tour (twelve console screens on demonstration data)
- Exploit Hound: Trust center (architecture, tenant isolation, secrets, access, AI handling, audit)
- Exploit Hound: Integrations and their status (GA, Beta, Not Built)
See it with your own jobs and topics
Tell us about your team and we'll walk you through setup, from choosing jobs to your first skills check.