Skip to content

Exploit Hound: attack paths and identity exposure

For the analyst who reads Exploit Hound's exposure graph and connects a customer's directories: how findings become nodes and edges, how routes are labelled by the evidence behind each hop, choke points, the read-only Active Directory assessment and the written authorization it needs, Entra ID / Microsoft 365 and Google Workspace reads with gaps reported as unassessed, hybrid identity paths, the cloud escalation routes the site describes, and how to talk about a path without calling it an attack.

Level
Advanced
Length
About 50 minutes
Contents
3 lessons · 1 video · final exam
Status
Published · updated 2 Oct 2026
  • Exploit Hound

Skills you'll practise

  • Explain how Exploit Hound turns assets, accounts, services and reachability into a graph of potential routes
  • Read a path's hop evidence and confidence and identify the choke point to fix
  • Prepare an Active Directory or Entra ID assessment with the right authorization, a read-only account and read-only consent
  • Interpret identity findings and unassessed areas and report them accurately
  • Describe a potential path to a customer without claiming exploitation or compromise

Course outline

  1. 1.Exploit Hound: attack paths and identity exposureVideo · 2 min
  2. 2.From findings to routesLesson · 17 min
  3. 3.Identity in the graph: Active DirectoryLesson · 16 min
  4. 4.Entra ID, Google Workspace and cloudLesson · 17 min
  5. 5.Exploit Hound: attack paths and identity exposure: knowledge checkKnowledge check · 15 questions
  6. 6.Final exam7 questions · passing it completes the course, so people who already know the material can test out

Sources it draws on

The lessons and questions are written from these references, so learners can go back to the original.

See it with your own jobs and topics

Tell us about your team and we'll walk you through setup, from choosing jobs to your first skills check.