Overview of the Domains Dashboard
The Domains tab provides a comprehensive list of all domains and subdomains associated with a specific vendor.
This dashboard helps you understand the vendor's full digital footprint, which is a critical part of assessing their attack surface.
Key Features of the Domains Table:
Domain: This column lists all the domains and subdomains identified for the vendor. A "Primary Domain" label helps you quickly identify the main domain.
Status: The status indicates whether the domain is "Active" or "Inactive." This helps you focus on the domains that are currently in use.
Score: Each domain has its own security score, providing a granular view of the security posture of different parts of the vendor's infrastructure.
Scanned On: The date when the domain was last scanned. This helps you track the recency of the security assessment.
Using the Dashboard:
Identify Risks: Use the "Score" and "Status" columns to quickly identify domains that have a low security rating or are inactive but may still pose a risk.
Filter: Use the filter options to view only "Active" or "Inactive" domains, allowing you to focus on specific areas.
Drill Down: Click on any domain to get a more detailed view of its risks and associated IP addresses.
Accessing Domain Details
From the Domains dashboard, click on any specific domain to open the detailed view panel.
This panel provides all the information you need to understand the security posture of that particular domain.
Domain Details Panel:
Domain Name: The name of the domain at the top of the panel.
Rescan: The "Rescan" button allows you to manually trigger a new scan for the domain if needed.
Score: The specific security score for this domain.
Last Scanned & First Scanned: These dates provide a historical context for the domain's assessment.
Labels: Labels (e.g., "Business Data," "Network Access") indicate the type of data or function associated with the domain.
IP Addresses: This section lists all the IP addresses that the domain resolves to. This is crucial for network security and firewall management.
Risks Section:
The "Risks" section lists all the security findings associated with this domain.
Finding: A concise description of the security issue (e.g., "Revoked certificate in use," "DMARC policy is private").
Request Remediation: The "Request remediation" button allows you to easily communicate these findings to the vendor, streamlining your risk management process.
Using This View:
This detailed view is essential for pinpointing specific security issues on a domain level.
You can use the "Risks" section to provide vendors with actionable steps for remediation.
The IP Addresses list can be used for your own internal security and network configuration needs.