BLOG
Cybersecurity insights.
Technical analysis of exposure management, written by the people who work on attack surface every day.
See all tags (53)
Filtered by #attack surface · 5 articles Clear filter
What external visibility gives an incident response team
Sizing an incident is the hardest part of responding to one, and NIST says so in writing. Two lists built from outside change that estimate.
Why a company that got hit tends to get hit again
The second incident almost never reuses the first one's vector. What repeats is the condition that opened it, and that survives the response.
EASM: discovering and classifying what you expose online
EASM continuously discovers exposed assets from the root domain, assigns an owner, and classifies exposures, with no agents to install.
Third-party risk: why breaches begin at the supplier
The third-party share of breaches doubled in a single year. Why the point-in-time questionnaire failed, and what replaces it.
From reactive to predictive cybersecurity
Cybersecurity is moving from a reactive model to a predictive one. Why continuous attack surface visibility is the foundation for that.