External Network Assessment

Dark clouds with silver linings under a starry night sky with blue light rays.

Why Assess An External Network?

Your network perimeter is one of your first lines of defense. We conduct a thorough assessment of your public facing systems, identifying and validating vulnerabilities that could be exploited by an external attacker. Our goal is to help harden your perimeter and close the doors to your organization before an adversary finds them.

Row of illuminated server hard drives with network cables connected in a data center rack.
Green digital code resembling the Matrix falling vertically on a black background.

Hostname And IPs List

First, we gather a list of applicable hostnames and IPs that we then use to map the external attack surface of your network and/or applications. This process helps identify live hosts, open ports, active services, and operating systems and hardware details. We also use publicly available information, open-source intelligence databases, and network mapping techniques to help understand your networks attack surface and potential attack vectors.

Assess And Explore Vulnerabilities

We then use this list of identified network assets to further identify and explore potential security vulnerabilities within the network that may allow our team to elevate privileges or pivot further into the network. In addition to identifying potential network vulnerabilities, we will also identify misconfigurations, weak protocols, insecure or exposed passwords, and technology specific network-level issues across the accessible network.

Magnifying glass placed on a laptop keyboard, focusing on the keys.
Hand interacting with a digital lock icon on a transparent virtual interface above a keyboard.

Confirm Vulnerabilities

After we test every area of your network, we will then validate each vulnerability we find using public and proprietary exploitation techniques. This ensures we have accurately identified and categorized each vulnerability and its risk, so false positives are not reported. We do not perform DDoS or damaging exploitation techniques as part of this validation. Once validated, vulnerabilities, additional findings, affected endpoints, and affected assets are consolidated into a detailed actionable report.

Detailed Actionable Summary

Each report consists of a high level vulnerability summary, vulnerability validation steps, so your team knows how to reproduce each finding, and actionable remediation items so you can resolve the identified vulnerabilities as quickly as possible. Remediations will also include source level mitigations where applicable that can be reviewed and implemented by network administrators and developers.

Hand holding pen drawing a digital project timeline with white bars labeled by weekdays in weeks 1 to 4.

Ready to Begin?

Contact us
Dark clouds with silver linings under a starry night sky with blue light rays.