RiskSignal — IP Intelligence & Attack Surface Management
RiskSignal delivers high-fidelity External Attack Surface Management (EASM) and IP Intelligence. Identify unknown assets, detect VPN and proxy usage, and monitor your digital footprint in real-time.
Core Capabilities
- IP Scanner & Lookup — Real-time public IP geolocation, ISP, ASN, and reputation analysis.
- VPN & Proxy Detection — Multi-vector anonymity detection including DNS leak and WebRTC analysis.
- Shadow IT Discovery — Automated reconnaissance of subdomains, certificates, and exposed services.
- Infrastructure Drift — SHA-256 state hashing to detect unauthorized configuration changes.
Technical Intelligence FAQ
How does RiskSignal map the external attack surface?
RiskSignal uses recursive discovery that ingests root domains and IP ranges, correlating Certificate Transparency logs, Passive DNS, and service fingerprinting to map managed and unmanaged assets.
How does VPN and Proxy detection work?
Our engine uses TCP/IP stack fingerprinting, DNS leak tests, and ASN correlation to identify VPN, Tor, and residential proxy markers in real-time.
What is infrastructure drift detection?
RiskSignal captures point-in-time snapshots and uses SHA-256 state hashing to alert you when ports, certificates, or DNS records deviate from their known secure state.