Infoblox has entered the external attack surface management (EASM) market with a DNS-native offering, alongside a new Supply Chain Intelligence capability, as it looks to help organisations get ahead of attackers using AI to compress the time between finding a vulnerability and exploiting it.
The launch responds to what Infoblox calls a time-compression problem: reconnaissance, vulnerability identification and exploit creation that once took attackers weeks can now take hours or minutes with frontier AI tools. The new External Attack Surface Management capability discovers internet-facing assets without software installation, credentialed access or active scanning, and prioritises exposures based on exploitability and business impact, including DNS hygiene issues traditional tools often miss.
Dangling DNS records found at most test organisations
In an early access programme, the capability identified dangling CNAME records — orphaned DNS pointers attackers can exploit to hijack a company’s web presence — at 31 of roughly 40 participating organisations. Nearly a third of those records were easy or trivial to take over, which could let attackers host phishing pages, steal credentials or send spoofed emails under a trusted corporate domain.
“As attackers automate reconnaissance and compress the time between exposure and exploitation, organizations need continuous visibility into their external attack surface and better context to prioritize the exposures that pose the greatest business risk,” said Michelle Abraham, Research Vice President, Security and Trust, IDC.
Mukesh Gupta, chief product officer at Infoblox, said the goal is to help security leaders answer a simple but increasingly difficult question — what can an attacker reach right now — by applying the company’s DNS expertise to surface the internet-facing exposures that matter most before they become incidents.
Extending visibility to vendors
The newly introduced Supply Chain Intelligence capability extends that same outside-in visibility to an organisation’s critical vendors, continuously monitoring for vendor exposures, leaked credentials, dark web activity and active threat campaigns. Both capabilities join Digital Risk Protection Services within the Infoblox Exposure Management portfolio, which the company says helps organisations discover, prioritise and reduce external risk across their own environments and the broader ecosystems they depend on.



Share your thoughts