With AI compressing reconnaissance and exploit development from weeks to hours, security vendors are racing to help enterprises identify exposures long before an incident happens.
Infoblox is the latest to make that move, announcing its entry into the External Attack Surface Management (EASM) market alongside a new Supply Chain Intelligence capability that broadens its exposure management portfolio.
These two additions are designed to give organizations visibility into both their own internet-facing assets and those of their critical vendors. According to Infoblox, the combined offering enables security teams to discover, prioritize, and reduce external exposures before attackers can exploit them.
“As attackers automate reconnaissance, organizations need continuous visibility into their external attack surface and better context to prioritize the exposures that pose the greatest business risk,” said Michelle Abraham, research vice president for Security and Trust at IDC. “This is driving growing interest in preemptive approaches to external attack surface management as part of broader exposure management strategies.”
The new capabilities join Infoblox’s existing Digital Risk Protection Services (DPRS). External Attack Surface Management has become one of the fastest-growing segments in cybersecurity, with vendors racing to help enterprises inventory internet-facing assets and identify exploitable weaknesses.
Infoblox’s differentiation lies in applying its long-standing DNS expertise to the problem. The company’s new EASM capability discovers internet-facing assets without requiring software agents, credentials or active scanning, the company said in a press statement shared with CSO ahead of the announcement on Tuesday.
It also evaluates exposures based on exploitability and business impact while surfacing DNS-specific issues that conventional EASM platforms may overlook, Infoblox claims. Among such issues are “dangling CNAME records,” which refer to the orphaned DNS entries that attackers can hijack to host phishing sites, steal credentials, or impersonate trusted corporate domains.
The company said an early access program involving roughly 40 organizations found dangling CNAME records at 31 participants, a third of which were reportedly easy to take over.
Infoblox also announced a new Supply Chain Intelligence that promises continuous monitoring of the internet-facing assets of critical vendors, tracking exposures, leaked credentials, dark web activity and active threat campaigns that could introduce risk through third-party connections.
This capability is positioned as an expansion of its broader Exposure Management strategy rather than a standalone product launch.
“The simple question every security leader should be able to answer is: ‘What can an attacker reach right now?’” said Mukesh Gupta, chief product officer at Infoblox. He argued that AI has made answering that question significantly harder by accelerating attacker reconnaissance, making continuous external visibility a key component of modern cybersecurity operations.