Attack Surfaces
How Guard maps and scores risk across external, internal, cloud, application, code, and LLM attack surfaces.
- Application Attack SurfaceHow Guard discovers your web applications and APIs, maps their authentication, and tests them for security vulnerabilities.
- CICD Pipeline SurfaceHow Guard scans your CI/CD pipelines across GitHub, GitLab, Azure DevOps, and Jenkins for supply-chain risks.
- Cloud Attack SurfaceHow Guard connects to your cloud accounts to inventory resources and find public exposures, secrets, and misconfigurations.
- External Attack SurfaceHow Guard discovers and tests everything your organization exposes to the public internet, starting from your seeds.
- Internal Attack SurfaceHow Guard assesses your Active Directory and tests internal network services for weak credentials.
- LLM Attack SurfaceHow Guard finds the LLM and AI services in your environment and tests them for prompt injection and related risks.
- Mobile Attack SurfaceUpload an Android APK and let Guard decompile it, analyze its manifest, and file findings alongside the rest of your attack surface.
- Source Code SurfaceHow Guard discovers your repositories and scans them for vulnerabilities, exposed secrets, and pipeline weaknesses.
- User Attack SurfaceHow Guard finds breach-exposed employee email addresses on your domains and flags domains open to email spoofing.