Expanded Coverage of Attack Surface Risks with Cortex Xpanse

Sep 24, 2024
3 minutes
... views

Xpanse 2.7: Unrivaled Attack Surface Management with Cutting-Edge Scanning and Insights

Organizations today face a significant challenge in managing and securing their expanding attack surfaces. The increasing complexity and scale of digital infrastructures mean that any overlooked or unmonitored component can become a gateway for cyber threats. This poses a critical issue for organizations, as the repercussions of security breaches can be devastating, ranging from financial losses to reputational damage.

To help organizations better secure and reduce their expanding attack surface, Xpanse 2.7 enhances scanning, improves data accessibility, and expands our assessment library.

Comprehensively Discover Your Entire Attack Surface

By regularly scanning all 65,000 ports across all IPv4 addresses, Xpanse is able to provide an unparalleled assessment of potential attack surface risks. This expanded coverage ensures that even non-standard ports, often targeted by attackers, are now closely monitored.

The benefits of this enhanced scanning are already clear from our customers' experiences. For example, one customer used this new capability to successfully detect insecure SSH services deliberately hidden on non-standard ports that might have otherwise gone unnoticed. With these advanced capabilities, your organization can:

  • Identify insecure SSH and other services on non-standard ports through expanded port scanning
  • Improve coverage to discover all your attack surface risks
  • Ensure that no service, even those considered unlikely to be found, is overlooked

What's New in Xpanse 2.7?

With rich data and intuitive tools to prioritize and address risks effectively, security teams also get:

  • Expanded Protocol Detection: In addition to scanning all 65k ports, Xpanse is also adding support for 50+ new protocols. These include torrenting protocols, IoT and OT protocols, cryptocurrency, and many vendor-proprietary protocols.
  • Enhanced Services XQL Dataset: Leveraging Cortex’s powerful XQL query language, Xpanse and XSIAM customers are now able to access detailed CVE information, expanded geolocation data, and additional service classification details, providing unparalleled context for informed decision-making.
  • Intuitive Alert Management: New widgets in the Alerts Overview Dashboard allow customers to track trends, filter alerts, and gain valuable insights with just a few clicks, streamlining workflows and facilitating rapid response to critical threats.
  • Effortless Reporting: The Remediation Report feature enables seamless sharing of new threat summaries with stakeholders, ensuring organization-wide alignment and collaboration in the fight against cyber threats.
  • New attack surface rules and tests: With over 860 Attack Surface Rules, 220 Attack Surface Tests, and ongoing enhancements to integrations and cloud support, Xpanse remains at the forefront of ASM technology, providing organizations with the tools and insights they need to secure their ever-changing attack surface.

For a complete list of the new capabilities and features, please see the Cortex Xpanse 2.7 Release Notes.

 


Subscribe to Security Operations Blogs!

Sign up to receive must-read articles, Playbooks of the Week, new feature announcements, and more.