How our Active Vulnerability scanner works
The vulnerability scanner integrates with our digital footprint discovery service. You can target an active scan to a selection of maximum 5 IP addresses or subdomains in your footprint.
The service can perform more than 100,000 vulnerability tests, depending on the type of services discovered on the target. The tests are updated every 6 hours to take into account the latest attack vectors.
An active scan can be run ad hoc. Scheduling is not available yet. After starting the scan, it can be paused and resumed, or stopped during execution.
For vulnerabilities detected, youโll find all key information regarding the vulnerability (CVSS v3.0 Base Score, Description, Remediation) in our portal. For more details, we link to the page the US NIST maintains on the vulnerability on its National Vulnerability Database (NVD) website.
To launch an active scan, select the IP address(es) you wish to target with the scan and press the Play button in the scan control. Next, select the ports you wish to target, either from the ports we've identified with our port scan, or with a manually configured Scan Profile (which can be saved for later use). Finally, click on the Launch scan button.
Note that an active scan can take up to 3 hours, depending of the application. You'll receive an email notification when the scan has completed.