Skip to main content
Glossary18 terms

Attack surfaceterms, explained.

Clear, practical definitions for the language of external attack surface management, and how each concept maps to the way Legba Adversary discovers, validates, and reports real exposures.

Program & Strategy.

Continuous Attack Surface Monitoring

Continuous attack surface monitoring is the practice of running asset discovery, exposure detection, and re-validation on an ongoing loop instead of as a one-time audit, so a newly exposed cloud bucket, subdomain, or service is caught hours after it appears rather than at the next quarterly scan. It exists because your internet-facing footprint changes every day, and a point-in-time snapshot is stale the moment a single deploy ships.

Program & Strategy
EASM vs ASM

Attack surface management (ASM) is the umbrella discipline for understanding and reducing the points an attacker could reach across an organization. External attack surface management (EASM) is the outside-in part of that discipline, focused on internet-facing assets and exposures.

Program & Strategy
EASM vs CAASM

EASM discovers internet-facing assets from the outside, including assets absent from internal records. CAASM consolidates internal and external asset data primarily through APIs connected to tools the organization already runs.

Program & Strategy
EASM vs CTEM

CTEM is a continuous program for scoping, discovering, prioritizing, validating, and mobilizing the treatment of exposures. EASM is a capability inside that loop, supplying outside-in discovery and context for the internet-facing attack surface.

Program & Strategy
EASM vs Vulnerability Management

EASM starts by discovering internet-facing assets that the organization may not know it owns. Vulnerability management starts with identified assets and manages known weaknesses, often through CVE findings, prioritization, patching, and verification.

Program & Strategy
External Attack Surface Management (EASM)

External Attack Surface Management (EASM) is the continuous, outside-in discovery, inventory, and risk assessment of an organization's internet-facing assets so security teams can find and fix exposures the same way an attacker would find them. It answers a single, urgent question: what of ours is reachable from the public internet right now, and which of those things are dangerous?

Program & Strategy
Vulnerability Scanning vs Attack Surface Management

Vulnerability scanning checks assets you already know about for known flaws like missing patches and weak configurations, while attack surface management (ASM) first discovers every internet-facing asset you own so nothing gets left unscanned. They are complementary: ASM answers "what do we have exposed?" and vulnerability scanning answers "what is wrong with it?"

Program & Strategy

Discovery.

Validation.

Methodology.

Exposure Concepts.

Keep exploring

Try it on the next page you do not trust

Legba is a Chrome extension with two modes. Ghost gives you a private browser route. Shield opens a page in an isolated browser off your device.

Free for 30 days. No card required.

Ghost. A private route for your browser. Shield. An isolated browser, off your device. Choose the mode. Close when finished.