Connect with us

Hi, what are you looking for?

HEADLINES

Kaspersky announces new External Attack Surface module

This enhancement introduces External Attack Surface Management (EASM) capabilities, giving security teams the visibility and control they need to stay ahead of cyber adversaries by continuously monitoring and securing their organization’s external perimeter.

Kaspersky launched the new External Attack Surface module within its Digital Footprint Intelligence (DFI) service, available directly in the Threat Intelligence portal.

This enhancement introduces External Attack Surface Management (EASM) capabilities, giving security teams the visibility and control they need to stay ahead of cyber adversaries by continuously monitoring and securing their organization’s external perimeter.

The exploit of public-facing applications has been the main initial vector of attack for many years. According to Kaspersky Incident Response report, in 2024, they once again ranked first, accounting for 39% of incidents. Moreover, over 90% of the vulnerabilities exploited by attackers in 2024 were published more than a year ago, indicating that the attacked organizations had ineffective update policies.

As organizations expand their digital presence across cloud services, external applications and shadow IT, the need for continuous discovery and monitoring of internet-facing assets has become critical. The new module helps address this challenge by monitoring exposed infrastructure, uncovering weak points such as outdated software or open ports and assigning risk scores that guide security teams in prioritizing remediation according to business impact.

The External Attack Surface module is designed to answer the fundamental questions every security leader faces: What internet-facing assets do we have and which are vulnerable? By combining vulnerability detection with misconfiguration analysis and risk assessment, it provides organizations with a clear understanding of their exposure – and the actionable steps needed to reduce it.

Advertisement. Scroll to continue reading.

This module does more than show the current state of a customer’s perimeter. It also processes and retains historical data, enabling teams to track changes, investigate incidents retrospectively and gain insight into the overall dynamics of their security posture. Data is aggregated from multiple specialized search engines, maximizing visibility across hosts and services. Each discovered issue comes with detailed descriptions and recommended mitigations, helping organizations move quickly from detection to resolution.

For customers, the value lies not only in visibility, but in actionability. Whether it’s patching a vulnerable service, moving assets behind VPNs, applying WAF rules or resetting compromised credentials, the Attack Surface module provides clear, prioritized recommendations to help organizations strengthen their defenses proactively – securing what hackers can see before they can exploit it.

“Security teams are under constant pressure to manage an ever-expanding digital perimeter. With the External Attack Surface module, we give them not only visibility of what attackers can see but also recommendations to reduce exposure and respond effectively. By enriching DFI with EASM functionality, we continue to expand the scope of our Threat Intelligence portfolio and deliver cross-product synergies that empower security teams with deeper insights, faster investigations, and more resilient cyber defense.” said Yuliya Novikova, Head of Digital Footprint Intelligence at Kaspersky.

Advertisement
Advertisement
Advertisement

Like Us On Facebook

You May Also Like

HEADLINES

Globe highlighted the importance of hybrid connectivity models that combine terrestrial networks with satellite technologies to ensure continuous service across more than 7,000 islands.

HEADLINES

Supported by Google.org with USD 5 million funding, the program aims to build scam resilience for 3,000,000 people across ASEAN, representing one of the...

HEADLINES

Attackers are drawn to QEMU and more common hypervisor-based virtualization tools like Hyper-V, VirtualBox, and VMware because malicious activity within a virtual machine (VM)...

HEADLINES

The vulnerability resides in the BootROM – firmware embedded at the hardware level. Attackers could potentially get access to any data stored on the...

HEADLINES

As attacks move at machine speed, security programs built on fragmented tools and manual processes are increasingly outmatched. Defending against agentic adversaries will require...

HEADLINES

Trust in cybersecurity vendors is fragile, difficult to measure, and increasingly shaping risk posture at both operational and board levels.

HEADLINES

"Globe will comply with the NTC directive as it actively participates in making the online space safe for children. In particular, Globe advocates protecting...

HEADLINES

“Identity is becoming the new battleground in cybersecurity,” said Dr. Andrew Newell, Chief Scientific Officer at iProov. “Generative AI is allowing attackers to industrialize...

Advertisement