
Disruptors ASM — External Attack Surface Management platform
Our proprietary non-intrusive intelligence engine maps your external attack surface from the attacker’s viewpoint.
- Intelligence sources
- 40+Intelligence sources
- Checks per domain
- 90+Checks per domain
- Active-mode tools
- 129Active-mode tools
- Scored security factors
- 11Scored security factors
The process
From visibility to verified proof
Passive scan
We map everything an attacker can see from the outside — every domain, host, service and exposure.
Scheduled discovery
AI validation
Included free. Our AI analyst investigates every passive finding and tells you which ones are real and which are false positives.
Zero noise
AI pen test
Optional. An AI pen tester safely attempts real exploits to prove exactly what could be breached — evidence, not assumptions.
Proof on demand
Human pen tester
Optional. If you have questions or need deeper validation, a CREST-accredited human pen tester reviews the findings and provides tailored guidance.
Expert validation
The platform
One platform for discovery, proof and reporting
Our intelligence engine finds exposure you did not know existed. Active testing proves what is genuinely exploitable. Reporting turns both into actionable insight for cyber teams and clear evidence for boards and auditors.
Per-subdomain discovery
Certificate transparency, passive DNS and eight independent discovery sources build a full external footprint — then every host is probed individually, not just counted.
Network security
Open ports, exposed services, TLS posture and CVEs enriched with NVD severity, EPSS exploit probability and CISA KEV status.
Cloud & infrastructure
Cloud ownership, exposed storage buckets, hosting footprint and misconfigured edge services mapped across your estate.
Application security
Web technology fingerprinting, outdated components, security headers, CSP and OWASP-aligned weaknesses graded A–F.
Supply chain & third parties
Third-party scripts, vendors and supplier domains discovered and scored alongside your own attack surface.
Code & data exposure
Leaked source code, exposed repositories, secrets, backups and open directory listings that attackers search for first.
Email & domain spoofing
DMARC, SPF, DKIM, BIMI and MTA-STS checked directly — the records that decide whether attackers can impersonate you.
Credential exposure
Breach-database and corporate email-pattern intelligence for the accounts an attacker targets first.
Brand & phishing
Lookalike domain monitoring, exposed cloud storage, leaked source code and subdomain takeover detection.
Threat intelligence
Known-exploited vulnerabilities, attacker chatter and exposure that maps to live campaigns and active threats.
Company & compliance
Corporate records, ownership and control gaps mapped to the frameworks your auditors ask about.
Active Mode
Run a full, standalone AI-orchestrated penetration test, or fire 129 offensive tools at a single finding from inside the report. Sandboxed, evidence-led, and written back into the same pillars.
Compliance
See where you are out of compliance
Every scan maps findings to the controls that matter to your auditors, boards and regulators — so you know exactly which gaps to close first.
Cyber Essentials
UK baseline technical controls
- Access control
- Secure configuration
- Patch management
- Malware protection
ISO 27001 / 27002
Information security management
- Access control
- Asset management
- Cryptography
- Operations security
NIST CSF 2.0
Govern, identify, protect, detect, respond, recover
- Asset management
- Protective technology
- Identity & access
- Detection processes
NCSC CAF
UK Cyber Assessment Framework
- Managing security risk
- Protecting against attack
- Detecting incidents
- Minimising impact
SOC 2
Service organisation controls
- Security
- Availability
- Processing integrity
- Confidentiality
PCI DSS
Payment card data security
- Secure networks
- Cardholder data protection
- Access control
- Monitoring
GDPR
Data protection technical measures
- Article 32 security
- Data minimisation
- Breach notification
- Privacy by design
OWASP Top 10
Web application security risks
- Broken access control
- Cryptographic failures
- Injection
- Insecure design
Included free
AI findings verification
Every passive scan credit includes AI validation at no extra cost. Instead of treating a passive finding as a conclusion, our AI analyst investigates it — confirming whether the exposure is real, whether it is actually exploitable, and what an attacker could do with it.
- ·What it is for: turning unverified passive alerts into evidence-based answers without waiting for a full pen test.
- ·What it does: launches targeted, AI-orchestrated checks against a specific finding, interprets the output and writes a verified verdict back into the report.
- ·How it is priced: unlimited AI verify runs are included with your passive scan credits — no Active Mode credits are used.
From alert to answer
A typical passive scan might flag an exposed admin panel, an old software version, or a misconfigured API. AI validation asks the follow-up questions: is it reachable, does it leak data, and does the evidence match the claim? If the finding cannot be confirmed, it is downgraded rather than escalated.
Free
with passive credits
Minutes
per verified finding
Passive ASM
Scheduled outside-in monitoring using only public data — no intrusive testing of your systems and nothing to install. Findings are cross-validated across independent sources and confirmed by content signature, never a bare HTTP 200.
- · Full asset inventory and change tracking over time
- · Ten scored factors with graded exposure
- · Portfolio view across every company you manage
Active Mode
When you need proof, launch a full independent penetration test, or target 129 industry-standard offensive tools at a specific finding. AI orchestrates the toolchain, interprets the output and writes verified exploit evidence back into the report.
- · Targeted scans launched from any passive finding
- · Confirmed findings labelled and de-duplicated automatically
- · CREST-accredited human validation available on top
Part of the Disruptors Cyber group
Find out what an attacker can already see
Run a free passive scan on your own domain, or talk to us about scheduled monitoring across a whole portfolio of companies.
This report is based on publicly available data and may include false positives. Active testing via Disruptors Radar confirms which findings are genuinely exploitable.

