Bloodhound - Tool

Threat entity extracted from intelligence sources

Frequency
13
occurrences
First Seen
December 27, 2025
Last Seen
July 16, 2026

Bloodhound is a tool tracked by ThreatCluster, appearing in 10 threat clusters built from 13 intelligence report mentions.

Bloodhound is a tool tracked across 10 threat clusters and 13 intelligence report mentions on ThreatCluster. First observed December 27, 2025; most recent activity July 16, 2026.

Related Threat Clusters

  • Critical SonicWall SMA1000 Vulnerabilities Under Active Exploitation

    SonicWall has reported two critical vulnerabilities, CVE-2026-15409 and CVE-2026-15410, affecting its SMA1000 Series appliances, which are currently being actively exploited. The first vulnerability, CVE-2026-15409, is…

    44 articles · Updated July 15, 2026
  • Operation Escaneo Targets Latin American Critical Infrastructure

    Operation Escaneo is a coordinated cyberattack attributed to the MexicanMafia group, targeting critical infrastructure across Latin America, primarily Mexico. The campaign, which spanned from 2025 to 2026, utilized…

    4 articles · Updated June 18, 2026
  • AI-Driven Malware Framework Automates EDR Evasion Tactics

    Sophos X-Ops analysts uncovered a threat actor utilizing AI technologies to develop a malware-testing framework aimed at evading endpoint detection and response (EDR) systems. The activity was detected on June 2, 2026,…

    16 articles · Updated June 2, 2026
  • Ransomware Fuels Surge in Global Cyberattacks

    As of February 12, 2026, organizations worldwide are experiencing an average of 2,090 cyber-attacks per week, largely driven by ransomware incidents. This increase highlights the ongoing challenges faced by businesses…

    1647 articles · Updated February 12, 2026
  • AI-Generated Malware Exploits Active Directory via Vibe Coding

    A threat actor utilized AI-generated malware to infiltrate a network on June 3, 2026, employing a PowerShell script created through a method called vibe coding. This technique allows attackers to generate custom scripts…

    4 articles · Updated July 9, 2026
  • SpecterOps Enhances BloodHound for Identity Attack Path Management

    SpecterOps has expanded its BloodHound Enterprise tool to include identity attack path mapping for Okta, GitHub, and Mac environments managed through Jamf. This update addresses the increasing number of intrusions that…

    3 articles · Updated March 19, 2026
  • Parrot OS 7.0 Released with Major Overhaul and New AI Tools

    Parrot OS 7.0, codenamed Echo, has been officially released, featuring a complete system rewrite based on Debian 13. This version introduces KDE Plasma 6, Wayland by default, and an expanded suite of penetration testing…

    2 articles · Updated December 27, 2025
  • Exploring Cybersecurity Certifications: OSCP and SCMLSC

    Two articles discuss the significance of cybersecurity certifications, focusing on the OSCP 300SC and SCMLSC. These certifications are aimed at individuals looking to enhance their skills in ethical hacking and…

    3 articles · Updated February 23, 2026
  • SpecterOps Launches BloodHound Scentry for Enhanced Identity Attack Path Management

    SpecterOps has introduced BloodHound Scentry, a new service aimed at helping organizations improve their attack path management (APM) practices and reduce identity-related risks. This service integrates BloodHound…

    3 articles · Updated February 10, 2026
  • Cyber Security Architect Roles Highlight Demand for Advanced Threat Management

    Two job postings reveal a growing need for cybersecurity professionals focused on advanced threat detection and response. EPAM Systems is seeking a Cyber Security Architect to lead security initiatives in enterprise…

    4 articles · Updated June 20, 2026

Recent Intelligence Reports

  • Unc2447 Sombrat And Fivehands Ransomware Sophisticated Financial Threat — cloud.google.com · July 16, 2026
  • AI-Coded Malware | Analyzing Vibe-Coded AD Enumeration — Huntress · July 8, 2026
  • Cyber Security Cloud Architect - Advanced Threat Response — Bebee · June 17, 2026
  • Operation Escaneo: Infrastructure Exposure, TTP Analysis, and Attribution Assessment of an ... — Cloudsek · June 17, 2026
  • Blog — specterops.io · June 2, 2026
  • BloodHound expands identity attack path mapping reach — Securitybrief.Au · March 20, 2026
  • BloodHound expands identity attack path mapping reach — Itbrief.Co.Nz · March 19, 2026
  • SpecterOps Expands Identity Attack Path Management to Okta, GitHub, and Mac — Businesswire · March 18, 2026

Frequently asked questions

What is Bloodhound?

Bloodhound is a tool tracked by ThreatCluster, appearing in 10 threat clusters built from 13 intelligence report mentions.

Is Bloodhound still active?

The most recent intelligence report mentioning Bloodhound on ThreatCluster is dated July 16, 2026. Activity was first observed December 27, 2025, giving a tracked span from then to July 16, 2026.

What is Bloodhound associated with?

Across ThreatCluster reporting, Bloodhound most frequently co-occurs with Mexican Mafia, MexicanMafia, PanchoVilla, Sombrat, Unc2447, among 12 tracked related entities.

What are the latest developments involving Bloodhound?

The most significant recent cluster is “Critical SonicWall SMA1000 Vulnerabilities Under Active Exploitation” (44 articles · Updated July 15, 2026). Bloodhound appears across 10 threat clusters in total, listed above with sources.

How much reporting does ThreatCluster have on Bloodhound?

Bloodhound appears in 13 intelligence report mentions across 10 deduplicated threat clusters, aggregated from 17,000+ monitored sources.

CVSS v3.1 Breakdown