- fix Permanently fixed the
more
links in the ASI demo ASI dashboard boxes. They no longer head to the now defunctRisks
tab - fix ASI pages should now automatically convert punycode into human readable unicode
- fix SSO stability fix
more
links in the ASI demo ASI dashboard boxes. They no longer head to the now defunct Risks
tabRisks
tab of ASI Projects has been officially depreciated. You can find similar features with improved performance in the Risk Rules
tabHosts with Self-Signed SSL/TLS Certificates
Development Infrastructure Exposure
Database Open Ports
Risk Rule that has been updated to use ASI snapshots. It looks a little different than the previous two rules but it’s increased accuracy and confidence has improved thanks to its use of ASI snapshotsNow it's possible to expand your Attack Surface analysis efforts by scanning not only the project's domain name and their associated domains, but also every subdomain associated with all the target's related domains.
Bug Fix Fixed a bug that caused the Attack Surface product to display content with a reverse ascending sort order. Content in Attack Surface should now display with desc. order again
Happy Lunar New Year!
We've been hard at work getting ready for some new features. Today we're releasing the following
ASR Detailed Application View added to the Beta Explorer Screenshots
page. Users with access to our Beta Explorer can begin testing out our new Detailed Application View by clicking on an item. Doing so will bring up a new modal with more detailed information on a given application
IP-Blocks Downloads IP-Blocks downloads were completely reworked to improve the performance of the download operation. This is available once again inside SurfaceBrowser in the following path /app/sb/domain/[domain]/ip-blocks
Activity Heatmap has been added to surfaceBrowser /app/sb/domain/[domain]/activity
Bug Fix We also fixed an issue with the subdomains endpoint that was not properly filtering the children_only
query param
It's time again for a big announcement!
We’re excited to announce our new SSO authentication system. This release includes Okta as the first integration for all SecurityTrails teams that utilize Okta for SSO.
You can find all details on how to enable SSO in your account here.
Stay tuned for more SSO integration announcements soon.
ANNOUNCEMENTIt's time again for some very exciting news!
Whether you're a fan of light or dark mode, both options are available today in SecurityTrails™ Free App, ASR, SurfaceBrowser, and User Console.
announcement Exciting news!! Our new SQL API endpoint is launched.
This replaces any prototype DSLv2 endpoints and is production-ready.
Please contact sales if you'd like to subscribe to it (it's not currently included in retail packages)
You'll be able to:
Check these links for documentation, and a full reference or properties and operators.
SurfaceBrowser
announcement New Company Acquisitions page
For each company you search for, there is a new section under "Associations" which includes and acquisitions that the company has completed and the date they completed it.
To get there in SurfaceBrowser, search for a company in the top search bar and select "Mergers & Acquisitions" in the bottom left of the side navigation bar under "Associations".
announcement New “Suborganizations” page
announcement New Activity page for a company
See new subdomains created in order of creation date. This is a great view to understand what recent changes a company is making to the technologies they use.
To get there, inside of SurfaceBrowser, search for a company in the top search bar and then click "Activity" under the "Domain" section of the side navigation.
improvement Better Company Searching
Search for a partial keyword to see all companies that match using our custom ranking algorithm.
To see it in action, search for a partial keyword - like "safe" in SurfaceBrowser, and then select the "More Results" link
improvement SSL box added to the IP summary page with more detailed information on certs
improvement Improved performance of the SSL tab on the company page when the number of certificates is huge
improvement The definitions of colors for WHOIS History on the company page are clarified
improvement New and improved downloads! Rebuilt from the ground up with improved performance, stability, and you can now download most filtered results
fix The Historical DNS table now has a sharable URL
fix Improved the accuracy of the Stats page on the SecurityTrails website
fix The Company page sidebar now correctly shows the count of SSL certs
fix The Company summary page now hides cards with information that is currently unavailable
API
fix Improved the consistency of empty records for the Domain Details endpoint. Null values are returned now, instead of empty JSON objects.
Console
fix The domain feed page would sometimes crash when selecting the historical feed, this bug is now fixed