Privilege exposure
Identify the identities, systems, groups, sessions, delegation, and ACL relationships that expose Tier 0.
Active Directory attack-path audits
JC Hunt maps the relationships that turn ordinary AD access into privileged compromise—then explains the path in language your technical team and leadership can act on.
One real path. Fifteen minutes. Free. Not a full assessment.
The finding is not the risk.
A forgotten group membership. A stale session. One permissive ACL. Alone, each can look like background noise. Chained together, they can become a route from an employee workstation to Domain Admin.
That chain is what matters. JC Hunt analyzes Active Directory as a graph of relationships—not a checklist of isolated misconfigurations—so you can see which permissions matter because of what they connect to.
This is not a teaser scan and it is not a free full assessment. I review your SharpHound data and select one meaningful, explainable path that shows how risk can compound inside your AD environment.
Then we spend 15 minutes on the path that matters: where it starts, why the chain works, what privileged target it reaches, and how I would think about breaking it.
Start the free reviewRun SharpHound, send the resulting ZIP through JC Hunt's Dropbox file request, then book the 15-minute review. No account portal and no multi-step intake form.
Run SharpHound in the environment you want reviewed and keep the resulting ZIP intact.
Standard SharpHound collectionSend the SharpHound ZIP directly through the JC Hunt Dropbox File Request.
Dropbox handles the file transferBook 15 minutes. I walk one real path from initial foothold to privileged impact.
Board-level clarity, technical receiptsFree attack-path review
There is nothing to upload to this website. Dropbox handles the collection transfer and Cal.com handles scheduling.
Generate a standard SharpHound collection and keep the resulting ZIP intact.
Send the SharpHound ZIP directly to JC Hunt through Dropbox. This website never receives the file.
Upload SharpHound collectionAfter uploading, pick a time for the review. Use the same work email so I can match your booking to your collection.
Book my free reviewA deeper engagement answers the question the free review intentionally does not: what does the rest of the graph look like?
Identify the identities, systems, groups, sessions, delegation, and ACL relationships that expose Tier 0.
Move beyond individual findings to understand reachable chains, chokepoints, and repeatable routes to privileged control.
Break the relationships that collapse the most risk first instead of working a severity-sorted configuration backlog.
Turn graph relationships into a concise story leadership can understand: foothold, path, impact, and corrective action.
Methodology
Relationships are evaluated in context, not as isolated red/yellow/green findings.
Analysis stays anchored to privileged identity, administrative control, and the systems that define your security boundary.
The goal is not merely to prove reachability. It is to identify where breaking a relationship meaningfully reduces exposure.
Every path should survive two audiences: the engineer who needs the technical chain and the executive who needs the consequence.
04 / FAQ
One meaningful Active Directory attack path selected from the SharpHound collection you provide, plus a 15-minute review of that path. It is deliberately not a full AD assessment, exhaustive findings report, or remediation project.
A standard SharpHound collection ZIP for the environment you want reviewed. Upload it through the JC Hunt Dropbox File Request, then book your review through Cal.com.
No. The focus is attack-path context: how permissions, group membership, sessions, delegation, ACLs, identities, and systems combine into routes toward privileged compromise.
Organizations with traditional or hybrid Active Directory that want enterprise-quality identity attack-path insight without standing up a large identity security program—especially SMB and mid-market IT, security, and infrastructure teams.
If the path is useful, we can discuss a broader engagement to map more of the environment, identify high-value chokepoints, and prioritize remediation. If not, you still leave with one concrete path and a clearer picture of the risk.
Your AD is already a graph.
One real attack path. One focused debrief. Zero commitment.
Start free review