Adversary View
See what an attacker can discover about you, with optional non-destructive active testing.
Adversary View maps what an attacker would find when researching your organisation: related domains, certificates, exposed services, technology signals and the exposures that matter most.
Passive by default
Without any opt-in, Adversary View uses passive DNS, TLS and HTTP intelligence only, just like the Snapshot but focused on discovery and attack surface.
Optional active testing
When you authorise the assessment you can tick Also run active testing (non-destructive vulnerability scanning). This adds:
- non-destructive vulnerability and misconfiguration scanning against the authorised domains (including WordPress and Joomla checks);
- reflected XSS and SQL injection confirmation, but only against the URLs you declared when ordering. URLs are never auto-discovered for these checks.
Active testing never brute-forces credentials and never uses destructive templates. If you declared no test URLs, the two injection checks have nothing to test and are skipped.
Tell your hosting provider and security team
Active testing generates traffic that a WAF or monitoring service may flag. Let your provider and your team know the authorised window in advance.
What you get
- Related domains and certificates, exposed-service indicators and technology fingerprints.
- Prioritised exposure findings with evidence.
- With active testing: confirmed vulnerability and injection findings.
Price
€299 standalone. Included 1× per year on Managed and per quarter on vCISO.