Infoblox Enters Attack Surface Market to Beat AI Threats

Infoblox has entered the external attack surface management (EASM) market with a DNS-native offering, alongside a new Supply Chain Intelligence capability, as it looks to help organisations get ahead of attackers using AI to compress the time between finding a vulnerability and exploiting it.

The launch responds to what Infoblox calls a time-compression problem: reconnaissance, vulnerability identification and exploit creation that once took attackers weeks can now take hours or minutes with frontier AI tools. The new External Attack Surface Management capability discovers internet-facing assets without software installation, credentialed access or active scanning, and prioritises exposures based on exploitability and business impact, including DNS hygiene issues traditional tools often miss.

Dangling DNS records found at most test organisations

In an early access programme, the capability identified dangling CNAME records — orphaned DNS pointers attackers can exploit to hijack a company’s web presence — at 31 of roughly 40 participating organisations. Nearly a third of those records were easy or trivial to take over, which could let attackers host phishing pages, steal credentials or send spoofed emails under a trusted corporate domain.

“As attackers automate reconnaissance and compress the time between exposure and exploitation, organizations need continuous visibility into their external attack surface and better context to prioritize the exposures that pose the greatest business risk,” said Michelle Abraham, Research Vice President, Security and Trust, IDC.

Mukesh Gupta, chief product officer at Infoblox, said the goal is to help security leaders answer a simple but increasingly difficult question — what can an attacker reach right now — by applying the company’s DNS expertise to surface the internet-facing exposures that matter most before they become incidents.

Extending visibility to vendors

The newly introduced Supply Chain Intelligence capability extends that same outside-in visibility to an organisation’s critical vendors, continuously monitoring for vendor exposures, leaked credentials, dark web activity and active threat campaigns. Both capabilities join Digital Risk Protection Services within the Infoblox Exposure Management portfolio, which the company says helps organisations discover, prioritise and reduce external risk across their own environments and the broader ecosystems they depend on.

Author


Discover more from techcoffeehouse.com

Subscribe to get the latest posts sent to your email.

Use promo code “TCH15” to get 15% off on checkout.

Share your thoughts

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Discover more from techcoffeehouse.com

Subscribe now to keep reading and get access to the full archive.

Continue reading

Discover more from techcoffeehouse.com

Subscribe now to keep reading and get access to the full archive.

Continue reading