Skip to main content

What is External Attack Surface Monitoring?

Learn how to get a detailed snapshot of your external cyber posture

Chris L avatar
Written by Chris L
Updated over 6 months ago

The External Attack Surface Monitoring (EASM) on Nexus provides an intelligence-driven evaluation of your organisation’s exposure to cyber threats.

Get a detailed snapshot of:

  • Domains scanned

  • Number of High, Medium, and Low Risk vulnerabilities found

  • Losses by Threat Categories

  • Potential financial impact from various cyber attacks (e.g. forensics, legal costs)

We use our own patented risk quantification model -- based on real-world cyber loss data, threats, and expert analysis -- to provide a highly-contextualised overview for your organisation, by utilising the following information:

  • Domain (e.g. https://protoslabs.io)

  • Country

  • Industry

  • Number of employees

  • Estimated annual revenue

  • Estimated number of Personal Identifiable Information (PII) records held by your organisation

  • Estimated number of Protected Health Information (PHI) records held by your organisation

  • Estimated number of Payment Card Information (PCI) records held by your organisation

  • Limit of insurance liability

Our EASM engine then maps this to your External Attack Surface, derived from public-facing digital assets that make up your external security posture. You can review the following in your 'Findings' tab:

  • Certificates

  • Email Security

  • Assets Vulnerabilities

  • Services

  • Leaked Credentials

  • HTTP Headers

These findings summarise the vulnerabilities that have been found and matched with the Common Vulnerabilities and Exposures (CVE) database by the MITRE Corporation. If we can see it, so can the attackers.

For more information on how to scan a domain on Nexus, see this help article.

Examples of EASM on Nexus by Protos Labs below:

Did this answer your question?