> For the complete documentation index, see [llms.txt](https://copilot-docs.bugbase.ai/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://copilot-docs.bugbase.ai/enterprise/attack-surface.md).

# Attack Surface

Attack Surface is the inventory view for root targets, discovered entities, agents, and ATT\&CK mapping.

<figure><img src="/files/DVANlOgKqwahJkxkFllk" alt=""><figcaption></figcaption></figure>

## Pages

| Page                | Use for                                                                                  |
| ------------------- | ---------------------------------------------------------------------------------------- |
| **Attack Surface**  | Summary of discovered assets and exposure.                                               |
| **All Entities**    | Search and inspect graph entities across the workspace.                                  |
| **Target Entities** | Manage manual root targets: domains, subnets, and APK files.                             |
| **Agents**          | Check connected execution workers.                                                       |
| **ATT\&CK Matrix**  | Review internal/external activity after findings or actions have MITRE ATT\&CK mappings. |

## During Onboarding

Use this section to confirm:

* root domains and subnets match the approved scope;
* discovered assets are expected;
* agents are connected before scans;
* high-value internal entities are known before enabling active exploit categories;
* out-of-scope entities are removed, denied, or excluded before scans.
