NordStellar, a threat exposure platform, has introduced an attack surface management (ASM) feature as an API and platform. This new capability enables organisations to automatically identify vulnerabilities while continuously monitoring threats associated with assets exposed to the internet.
ASM consists of two modules — an automatic asset discovery and an external vulnerability management — for monitoring exposed assets and discovering vulnerabilities. The first module runs various domain enumeration processes and automatically identifies and catalogues all internet-exposed assets, including web servers, applications, and network-connected devices.
The second module helps discover vulnerabilities and provides much-needed intelligence for recovery efforts.
The attack surface management works by first implementing automatic asset discovery by using several techniques. These involve DNS enumeration, web crawling, and other open-source intelligence (OSINT) methods to identify all devices and applications running on the internet.
Secondly, it conducts regular vulnerability assessments by scanning the assets for known vulnerabilities using passive service fingerprints. After discovering the flaws, ASM prioritises them according to the severity, exploitability, and potential impact.
ASM also provides real-time alerts about new vulnerabilities and changes to the attack surface to the enterprise’s security team and a comprehensive report for later analysis.
“ASM helps to reduce companies’ attack surface by identifying and mitigating vulnerabilities, minimising the potential for successful attacks. It also offers enhanced visibility into shadow IT so the security team can discover and manage unauthorized IT resources that pose security risks,” head of product at NordStellar, Vakaris Noreika, told Candid.Technology. “The feature increases operational efficiency because attack surface management tasks are automated, and the risks are prioritised in order to focus remediation efforts on the most critical cases.”
By integrating automation and intelligence into cybersecurity workflows, NordStellar‘s ASM enhances operational efficiency and fortifies an organisation’s resilience against cyber threats.
In the News: Indian Gov uses AI to tackle the Ayushman Bharat Fraud