Attack Surface Management

A continuous ASM pipeline: network enumeration, banner grabbing, TLS inspection, and screenshot capture.

  • masscan-based port/service discovery, banner grabbing for service fingerprinting, and TLS certificate chain/expiry inspection.
  • Diff-vs-prior scanning surfaces what changed on a target since its last scan.
  • Headless-chromium screenshot capture gives a visual snapshot of discovered web services.
  • Shares the same YARA (yara-x) and ClamAV malware-scan code path as S3 scanning, applied to ASM-discovered targets instead of S3 objects.

← Back to all features

Full technical documentation →