0x640 - Teknik - BloodHound et OpenGraph

0x640 - Teknik - BloodHound et OpenGraph

🎙 PolySécure Podcast 👥 540 📅 October 7, 2025 ⏱ 34 min 👁 18 📄 expert opinion 🧭 2026-08-16
Available in: English (current) Français

Keywords

BloodHoundOpenGraphAttack PathAccess PathCypher

Summary

In this podcast episode, Mathieu Saulnier (Scooby), product manager for BloodHound Community Edition at SpecterOps, discusses the latest version 8 of BloodHound, focusing on the new OpenGraph feature. OpenGraph allows users to ingest any type of data into the graph and create custom attack paths, extending beyond Active Directory and Azure to technologies like OnePassword, Snowflake, Jamf, and more. The community quickly adopted this feature, with collectors for Ansible, VMware vCenter, and ESXi emerging within days. Mathieu explains the difference between access paths and attack paths using a Google Maps analogy: access paths follow rules, while attack paths exploit unconventional routes. He highlights the importance of interconnecting systems, as a compromised workstation can lead to GitHub access and potential supply chain attacks. The episode also covers the requirements for community collectors, including documentation and pre-built Cypher queries, and discusses the use of Cypher for querying the graph database. Mathieu shares real-world examples of critical vulnerabilities found using BloodHound, such as a 60,000-employee company where all users were local admins on a server with a domain admin account, enabling domain compromise in three steps. He also mentions the new table view feature and the quote by John Lambert: ‘Attackers think in graphs, defenders think in lists.’ Finally, he promotes Deathcon Montréal, a hands-on detection and threat hunting conference.

217 words

Critical Evaluation

Value of the Information & Strength of the Argument

The value of the information is high, as it provides insights into the latest developments in BloodHound, a widely used open-source tool in cybersecurity. The speaker’s expertise and direct involvement in the product’s development lend credibility. The argumentation is solid, using clear analogies and real-world examples to illustrate concepts. The discussion on access vs. attack paths is particularly valuable, as it clarifies a nuanced distinction. The episode also offers practical advice for creating community collectors and using Cypher queries, which is useful for practitioners.

Scientific Rigor, Source Quality, Title Accuracy

The scientific rigor is adequate for a podcast format. The speaker references specific tools and techniques, and the information is based on professional experience. However, no external sources are cited, and the claims are not backed by formal references. The title accurately reflects the content, which is focused on BloodHound and OpenGraph. The episode is well-structured and informative, but it lacks formal citations and peer-reviewed evidence.

165 words

Title / Content Match

The title accurately reflects the content, which focuses on BloodHound and its new OpenGraph feature.

Quality & Reliability

8/10

The speaker is a product manager for BloodHound Community Edition at SpecterOps, with 20 years of experience in cybersecurity. The information is based on direct professional experience and technical expertise. The podcast format is informal but the content is accurate and well-structured.

Key Moments

Cited Sources

Concurring Sources

Contribution & Novelties

This episode provides an in-depth look at the new OpenGraph feature in BloodHound, which is a significant advancement in attack path analysis. It offers practical insights into creating custom collectors and using Cypher queries, which are valuable for both offensive and defensive security professionals. The discussion on access vs. attack paths is particularly insightful, as it clarifies a common misconception.

Pour aller plus loin :

101 words

Radar Profile

The radar profile shows high scores in information quantity, quality, and reliability, with a slightly lower technical level. This indicates a well-balanced episode that is informative and credible, but may require some prior knowledge to fully grasp the technical details.

Reliability 8/10

💬 No comments were provided for analysis.