Which attack-surface-management activity focuses on enumerating an organization's network perimeter and internet-facing services so that those assets can be secured and the overall attack surface reduced?
Edge discovery identifies all hosts, IP ranges, domains, and services that are visible from outside the organization. By cataloging these boundary assets, security teams gain the visibility needed to patch vulnerabilities, disable unused services, and implement compensating controls-thereby directly reducing the attack surface. Security-baseline scanning, static code analysis, and fuzz testing are valuable, but they do not focus on mapping the external network edge.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is meant by 'edge discovery' in cybersecurity?
Open an interactive chat with Bash
How does edge discovery reduce the attack surface?
Open an interactive chat with Bash
How is edge discovery different from security-baseline scanning?