What We Detect
Subdomain Takeover
CNAME records pointing to unclaimed resources on AWS, Azure, GitHub Pages, Heroku, and 50+ other providers
Dangling Cloud Resources
S3 buckets, CloudFront distributions, Azure apps, and load balancers that no longer exist
Expired Domain References
DNS records pointing to domains that have expired or are available for registration
Orphaned MX Records
Mail exchange records pointing to non-existent or unclaimed mail servers
Stale NS Delegations
Nameserver records delegating to servers no longer under your control
Dangling A/AAAA Records
IP addresses that have been released or reassigned to other organizations
Core Features
Continuous Monitoring
Automated daily scans of all your domains and subdomains. Real-time detection through Certificate Transparency log monitoring.
Comprehensive Discovery
Subdomain enumeration using multiple sources including CT logs, DNS brute-forcing, and passive DNS databases.
Risk Prioritization
Vulnerabilities ranked by severity based on subdomain criticality, SSL certificate presence, and attack feasibility.
API Integration
RESTful API for automated scanning, bulk operations, and integration with your existing security tools.
Alert System
Instant notifications via email, Slack, PagerDuty, or webhooks when new vulnerabilities are detected.
Compliance Reports
Scheduled reports for security audits with vulnerability trends, resolution tracking, and executive summaries.
How It Works
Technical Implementation
- DNS record enumeration and analysis
- Provider fingerprinting for 50+ services
- HTTP/HTTPS response validation
- Multi-region verification nodes
- False positive reduction via ML
- Historical DNS tracking
- Passive DNS data correlation
- Certificate Transparency monitoring
Pricing
Starter
- Up to 10 root domains
- Daily scanning
- Email alerts
- API access (1,000 calls/mo)
- 30-day data retention
Professional
- Up to 100 root domains
- Hourly scanning
- Slack/Teams integration
- API access (10,000 calls/mo)
- 90-day data retention
- Custom reports
Enterprise
- Unlimited domains
- Real-time monitoring
- All integrations
- Unlimited API access
- Unlimited data retention
- Dedicated support
- On-premise deployment option
Integrations
Security Tools
Splunk, ElasticSearch, QRadar, SentinelOne, CrowdStrike
Ticketing Systems
Jira, ServiceNow, PagerDuty, Opsgenie
Communication
Slack, Microsoft Teams, Email, Webhooks