Skip to content

Run Asset Discovery

NodeZero’s External Asset Discovery is an enumeration capability that finds all the assets linked to your organization. It leverages DNS, passive website crawling, certificate scraping, and Open Source Intelligence (OSINT)–gathering capabilities and services.

Discovery without exploitation

No exploitation is performed during this operation.

Initiating Discovery

If you just configured your Scope and selected Start Discovery, the NodeZero Portal's External Scopes page will display a confirmation banner (shown below) that discovery has begun. As also shown below, you can use an existing Scope's Actions () menu to initiate discovery, or to edit the Scope's configuration or delete it.

NodeZero Portal with focus on "External Assets" top link and "Scopes" lower tab, and green "Discovery created" transient confirmation banner at upper right. In the "External Scopes" table below this, the first "Test" row's right Actions menu is opened to show "Delete Scope," "Edit Scope," and "Run Discovery" options.

Alternatively, you can click Run External Asset Discovery from the upper left and, in the resulting modal, click the + button to the right of Run with Existing Scope.

The Run External Asset Discovery modal provides "Create New Scope" and "Run with Existing Scope" buttons.

Then, use the Select a Scope drop-down and select Next.

Run External Asset Discovery modal with "Select a Scope" drop-down open to show two existing Scopes.

The modal will expand, enabling you to review, optionally modify, and confirm your Scope's configuration before beginning discovery. (For details about these options, see Create a Scope.)

Asset Discovery Results

When Asset Discovery completes enumeration, NodeZero sends you an "Asset Discovery complete" email, with a link to display discovery results (as shown below).

Example Pentests > Summary page, showing counts of Hosts, Services, and URLs discovered, along with the discovery test's NodeZero IP address and timestamps.

Your next step is to authorize the discovered assets for external pentesting.