For the complete documentation index, see llms.txt. This page is also available as Markdown.

Attack Surface

Attack Surface is the inventory view for root targets, discovered entities, connected agents, and MITRE ATT&CK mapping.

Page
Use it for

Attack Surface

Review discovered exposure and inventory summaries.

All Entities

Search graph entities across the workspace and inspect their properties.

Target Entities

Manage external root targets and other dedicated upload targets when enabled.

Agents

Confirm execution workers, reported subnets, interfaces, and capacity.

ATT&CK Matrix

Review actions and findings that have MITRE ATT&CK mappings.

Before a run:

  • confirm external root targets match the authorization;

  • confirm the selected internal agent reports only the expected reachable subnets;

  • investigate unexpected discovered assets before expanding scope;

  • exclude or deny out-of-scope entities and paths;

  • confirm required agents are connected.

Internal subnets come from agent inventory, cloud scopes come from cloud discovery, and code repositories come from the connected GitHub App. See Target Assets for where each target type is managed.

Last updated