top of page
attacking and defending

HoundMasker : 
Privacy-Preserving Attack Path Analysis for BloodHound in the LLM Era

24 July 2026  |  11:00 AM ET  |  45 Minutes Duration

hacker summer  webinar page  banner final 1.png

Overview

LLMs are increasingly being used to analyze and reason about Active Directory attack graphs, helping identify attack paths, privilege escalation opportunities, chained ACL abuses, ADCS ESC misconfigurations, delegation weaknesses, and other security findings. However, sharing a BloodHound export with a third-party AI also exposes sensitive information such as domain names, usernames, hostnames, group names, GPOs, SIDs, and free-text fields that may contain cleartext credentials. For organizations handling confidential environments, this creates a significant privacy concern.

HoundMasker addresses this challenge by masking organization-specific identifiers in BloodHound Community Edition JSON exports while preserving the underlying graph structure. ACL relationships, group memberships, delegation rights, sessions, and SID references remain consistent across all files, allowing the masked dataset to retain the same attack paths and relationships as the original graph. This enables AI-assisted analysis without exposing real organizational identities or sensitive metadata.

The tool also generates a local reverse mapping that allows AI findings to be translated back to the original object names without sharing the mapping outside the environment. Implemented in pure Python using only the standard library, HoundMasker includes structural validation checks and ensures the masked data remains compatible with BloodHound Community Edition imports.

COMMUNITY SESSION BANNER 1 copy (1).png

Register

Get the latest updates on exclusive offers, webinars, giveaways, and key activities delivered directly to your inbox.

Watch the Recorded Webinar

Join the live session

24 July 2026 | 11:00 AM ET | 45 Minutes Duration

Get Participation Certificate

HS-26_HoundMasker_01 (1).jpg

MEET THE SPEAKER

Abhisek Rajkumar

abhis3k-sqr - Abhisek Rajkumar (1).jpg

Abhisek R is a Security Consultant at NetSPI, where he specializes in internal network penetration testing, with a strong focus on Active Directory security assessments. He has also worked on penetration tests across web applications, APIs, mobile applications, and enterprise network environments in previous organizations.

He has reported security vulnerabilities to organizations such as Google, Zoho, and Brave, and has contributed to publicly disclosed vulnerabilities, including CVE-2023-21035. His experience spans vulnerability assessments, penetration testing, and security research across a wide range of modern attack surfaces.

Abhisek is also the host of “The Abhisek Cast,” a cybersecurity podcast that explores lesser-known and under-discussed areas of the security ecosystem, featuring CEOs, CISOs, and security researchers from across the industry. He actively contributes to the security community through research, knowledge sharing, and technical discussions aimed at making complex security topics more accessible.

bottom of page