
Laelaps: Attack-Path Analysis Console for Active Directory Released
Active DirectoryCybersecurityPenetration TestingPrivilege Escalation
Laelaps is a tool that ingests SharpHound and bloodhound-python collections and displays Active Directory as a graph. The backend uses Swift on Hummingbird over Elasticsearch, while the frontend combines React modules with Palantir's Blueprint, cosmos.gl for WebGL graph visualization, and Motion. Users can mark objects they control as owned, and Laelaps automatically finds privilege escalation paths from that account to domain control, showing the required technique for each step and recomputing paths when additional objects are owned.