Threat Surface Probe

Run a large, actively maintained detection-signature library against a target to find CVEs, exposed panels, misconfigurations, and default credentials.

Monitor this automatically

NetTests can run this check on a schedule, preserve historical results, compare changes over time, and alert you the moment something breaks.

Start monitoring free → See all monitoring products

Frequently Asked Questions

What does Threat Surface Probe check?

It runs a large, actively maintained library of detection signatures against a target across four categories: known CVEs, exposed admin/management panels, common misconfigurations, and default credentials. New CVE signatures are typically available within hours of public disclosure.

Is this an exploitation tool?

No — this only runs detection-oriented checks (pattern/signature matching against responses). More intrusive categories such as active exploitation workflows and fuzzing are deliberately excluded from every scan.

Why does this require authentication?

This tool sends a large number of probe requests per target. From a public form it would look indistinguishable from attack traffic, exhaust shared resources, and could violate the terms of service for third-party targets. Authentication and target-ownership verification ensure users only scan infrastructure they control.

How current is the detection coverage?

The signature library is refreshed automatically on a daily schedule from its upstream source, independent of any deployment — coverage doesn't go stale between releases of this site.