Threat Surface Probe
Run a large, actively maintained detection-signature library against a target to find CVEs, exposed panels, misconfigurations, and default credentials.
Monitor this automatically
NetTests can run this check on a schedule, preserve historical results, compare changes over time, and alert you the moment something breaks.
Start monitoring free → See all monitoring productsFrequently Asked Questions
What does Threat Surface Probe check?
It runs a large, actively maintained library of detection signatures against a target across four categories: known CVEs, exposed admin/management panels, common misconfigurations, and default credentials. New CVE signatures are typically available within hours of public disclosure.
Is this an exploitation tool?
No — this only runs detection-oriented checks (pattern/signature matching against responses). More intrusive categories such as active exploitation workflows and fuzzing are deliberately excluded from every scan.
Why does this require authentication?
This tool sends a large number of probe requests per target. From a public form it would look indistinguishable from attack traffic, exhaust shared resources, and could violate the terms of service for third-party targets. Authentication and target-ownership verification ensure users only scan infrastructure they control.
How current is the detection coverage?
The signature library is refreshed automatically on a daily schedule from its upstream source, independent of any deployment — coverage doesn't go stale between releases of this site.