Attack Surface Discovery discovers and assesses your internet-facing domains as part of your external attack surface.
Attack Surface Discovery identifies your internet-facing domains, subdomains, and
hosts using
your connected identity and access management (IAM) systems and Trend Vision One sign-in information. You may also add domains manually either by choosing from a
suggested
list or by entering specific domains. Domains undergo a secondary verification process
before
appearing in Internet-Facing Assets. Data for internet-facing domains is
updated daily.
ImportantIt may take up to 10 days for added or removed
domains to be reflected in the domains list.
|
The following table explains the usage of domain-related terms in Internet-Facing
Assets.
Term
|
Description
|
Domain
|
|
Subdomain
|
|
Host
|
|
When Attack Surface Discovery assesses your domains, domain-related risks are identified
based
on the following factors:
Factor
|
Example of risk
|
Domain information
|
Domain expired
|
SSL/TLS information
|
SSL/TLS certificate using weak or deprecated protocols
|
HTTP response
|
Server information advertised in HTTP response
|
The following table outlines the actions you can perform on the Domains
tab:
Action
|
Description
|
||
View an overview of internet-facing root domains and hosts
|
The Internet-Facing Assets widget provides the following
information:
|
||
View the list of verified internet-facing root domains and hosts related to each root
domain
|
The list includes the following information:
You can filter list entries based on criteria such as criticality and host provider.
|
||
Add root domains or subdomains/hosts to the list
|
|
||
Remove root domains or subdomains/hosts from the list
|
|
||
View the asset details screen for each root domain and host
|
The asset details screen includes the following tabs:
|
||
Export information about root domains and hosts discovered in the last 7 days
|
Each CSV file contains a maximum of 100,000 records.
|