Skip to content

External Attack Surface Management (EASM) ​

EASM gives you continuous visibility into your organization's internet-facing assets. Hashiro automatically discovers subdomains, services, and URLs, then probes and monitors them for changes, vulnerabilities, and misconfigurations.

EASM is a core pillar of Hashiro's Continuous Threat Exposure Management (CTEM) approach: rather than point-in-time assessments, your attack surface is monitored on an ongoing basis so new exposures are detected as soon as they appear.

EASM overview

Screenshots use fictional demonstration data.

How It Works ​

  1. Scope Definition: you define in-scope and out-of-scope targets (domains, IPs, CIDRs, wildcards).
  2. Automated Discovery: Hashiro enumerates subdomains, crawls for URLs, and scans for open services.
  3. Probing: each discovered asset is probed with HTTPX to collect metadata (HTTP status, page title, technologies via Wappalyzer, screenshots, favicon hashes, web server identification, CDN detection, and more).
  4. Vulnerability Scanning: Nuclei templates run against discovered assets to detect known vulnerabilities, misconfigurations, and exposures.
  5. Continuous Monitoring: monitoring repeats according to the service configuration. New assets, removed assets, and status changes are tracked.

Module Tabs ​

The EASM module is organized into six tabs:

TabPurpose
StatsSummary statistics for the entire attack surface
AssetsPaginated list of all discovered assets with probe data, screenshots, and technology details
URLsDiscovered URL paths with probe information
ServicesExposed network services detected via port scanning
IssuesVulnerabilities and misconfigurations found on the attack surface
ConfigIncluded scope and exclusions

Key Capabilities ​

  • Asset Discovery: automated subdomain enumeration and asset identification
  • HTTP Probing: rich metadata collection for every web-facing asset (title, headers, status codes, technologies, screenshots)
  • Port Scanning: detection of exposed services across 27 standard ports
  • Vulnerability Detection: Nuclei-based scanning for known CVEs, misconfigurations, and exposures
  • Screenshot Capture: visual snapshots of every web asset for quick identification
  • Technology Detection: Wappalyzer-powered fingerprinting of web technologies, frameworks, and libraries
  • CDN Detection: identification of CDN providers fronting your assets
  • Change Tracking: monitor asset availability, technology changes, and new exposures over time
  • Export: download asset data as PDF or CSV

TIP

EASM availability and monitored-asset limits depend on your organization's provisioned service and license.

  • Cloud Security: monitor cloud infrastructure alongside your external surface
  • Inventory: cross-project asset search across all your assets
  1. Open Attack Surface in the sidebar.
  2. Use Stats for the overview, Assets for hosts, URLs for paths, and Services for ports.
  3. Open a row to inspect its evidence and associated findings.
  4. Use Issues to filter findings and Config to review scope.

The view is limited to the organization you are allowed to inspect. Empty results can mean no in-scope targets or no collected data yet. See Scope configuration.

Hashiro. Continuous Threat Exposure Management.