Attack Surface Management¶
Escape's ASM discovers internet-exposed assets from your configured scope and integrations, then refreshes the inventory as your estate changes. It maps domains, subdomains, IP ranges, and the services they host. Escape classifies discovered Assets so your team can choose targets for DAST and AI Pentesting from the inventory.
What You'll Find Here¶
- Quickstart: seed your first scope and get results in minutes.
- Asset Management: attribute enrichment, Asset lifecycle, and bulk editing.
- Shadow API Discovery: find undocumented APIs.
- Code Owners and Routing: extract and contact code owners.
- Integrations: discover Assets from cloud and repository sources.
- Scope Management: define what's in and out of your attack surface.
- Network Configuration: rate control and Public Locations for scan traffic.
- Technologies: the frameworks, runtimes, and platforms Escape fingerprints.
- CVE Scanning: surface known vulnerabilities on discovered assets.
- Network Scanning: port and CIDR scanning for services off standard ports.
- Configuration Reference: the full ASM scanner configuration schema.
Why It Matters¶
ASM brings discovered shadow APIs, forgotten subdomains, and misrouted services into your inventory. Use ownership data to contact the responsible team and select Assets for security testing.