Home » Emerging Technologies » Cyber Security » Infoblox EASM Expands Exposure Management Portfolio
News Desk -

Share

Infoblox EASM is expanding the company’s Exposure Management portfolio with the launch of External Attack Surface Management (EASM) and Supply Chain Intelligence. The new capabilities are designed to help organizations identify, prioritize, and reduce cyber exposures across their internet facing assets and those of their critical vendors before attackers can exploit them.

The launch comes as AI continues to accelerate cyberattacks. Historically, reconnaissance, vulnerability identification, and exploit creation could take attackers weeks. However, frontier AI has reduced that timeline to hours or even minutes. As a result, organizations operating across hybrid and multi cloud environments require better visibility into internet facing assets and third party dependencies that could increase cyber risk.

The new Infoblox EASM capability enables organizations to instantly discover internet facing assets without software installation, credentialed access, or active scanning. It identifies and prioritizes exposures based on exploitability and business impact. The solution also detects DNS hygiene issues that traditional tools often overlook.

During a recent early access program, the capability identified dangling CNAME records at 31 out of approximately 40 participating organizations. These orphaned DNS pointers can be exploited by attackers to hijack a company’s web presence. Infoblox found that nearly one third of the identified records were easy or trivial to take over. This could allow attackers to host phishing websites, steal credentials, or send spoofed emails using trusted corporate domains. Without continuous outside in visibility, organizations may remain unaware of these risks until they are exploited.

Michelle Abraham, Research Vice President, Security and Trust at IDC, said, “AI is forcing organizations to rethink how they manage cyber risk. As attackers automate reconnaissance and compress the time between exposure and exploitation, organizations need continuous visibility into their external attack surface and better context to prioritize the exposures that pose the greatest business risk. This is driving growing interest in preemptive approaches to external attack surface management as part of broader exposure management strategies.”

In addition, Infoblox introduced Supply Chain Intelligence as a new capability within its Exposure Management portfolio. The solution extends outside in visibility beyond an organization’s own assets to the internet facing assets of critical vendors. It continuously monitors vendor exposures, leaked credentials, dark web activity, and active threat campaigns. This helps security teams incorporate third party exposure into existing security operations workflows.

Mukesh Gupta, Chief Product Officer at Infoblox, said, “The simple question every security leader should be able to answer is: ‘What can an attacker reach right now?’ As AI accelerates attacker reconnaissance, that question has become much harder to answer. With Infoblox EASM, we’re applying Infoblox’s deep DNS expertise to help customers discover the internet facing exposures that matter most before they become incidents. By extending that same outside in approach to critical vendors through Supply Chain Intelligence, we’re helping organizations gain a more complete view of external risk. Combined with Digital Risk Protection Services, customers can not only identify emerging threats across their own environments and third party ecosystem, but also take action to disrupt them before they become incidents. That’s what a more preemptive approach to cybersecurity looks like.”

External Attack Surface Management and Supply Chain Intelligence now join Digital Risk Protection Services within the Infoblox Exposure Management portfolio. Together, these capabilities help organizations discover, prioritize, and reduce external cyber risk across their own environments and partner ecosystems. With Infoblox EASM, the company is strengthening its preemptive cybersecurity approach by providing continuous visibility into external attack surfaces and supply chain risks.