External Attack Surface Alerts

You can create rule based alerts for your externally exposed assets by using the existing templates and by specifying a query. For more information, refer to Create a New Action, Create a New Rule, and Manage Alerts.

Examples of alerts:

  • You can set an alert for the externally exposed assets that are discovered in last 8 days from a particular domain.
  • You can set an alert for an externally exposed assets that are created in last 2 hours.

Use the following tokens to create rule-based EASM alerts:

  • asset.org.name
  • asset.isp
  • asset.asn
  • asset.domain
  • asset.subdomain
  • whoIs.creationDate
  • whoIs.registrantOrg
  • whoIs.registrantEmailId
  • whoIs.registrar