Attack Surface: Probable Infrastructure

Use the Probable Infrastructure page in the Security Posture Management application [menu-attack-surface.png Attack Surface ➔ Probable Infrastructure] to request asset suggestions and view the requests log, which provides a comprehensive view of your external attack surface.

  • Enhances asset attribution, asset discovery, and surfaces assets with weaker attribution evidence.
  • Identifies hidden infrastructure to reduce blind spots in the attack surface.
  • A broader visibility and provides opportunities for risk reduction.
  • Uncovers potential, previously untracked assets with low-confidence linkages.

Available with EASM Enhanced.

Suggestions are not confirmed attributions. The data does not impact Bitsight Security Ratings unless explicitly confirmed as belonging to the organization.

With Probable Infrastructure, you can:

  • Identify and address potential gaps in the attack surface.
  • Proactively validate and address exposure risks for greater control over cybersecurity posture.
  • Review and classify probable assets for greater data accuracy.
  • Proactively address potential exposure risks and validate the digital footprint.
  • Mitigate risks by addressing untracked assets and enhancing their cybersecurity strategy.

Technology

Probable Infrastructure leverages:

  • Advanced Bitsight AI and Machine Learning models from the Graph of Internet Assets (GIA) to map assets with improved precision and scalability.
  • Data and insights from service provider infrastructure for more accurate attribution.

Actions

Add Suggested Asset

Add a suggested asset and initiate the add assets workflow in the Infrastructure page.

Instructions:

  1. Select a successful (request status) suggestion from the requests log.
  2. Select a suggested asset.
  3. Select the external-link.png Add button at the top-right of the Suggestion Evidence sheet.

Download Suggestion Details

  1. Select a successful or outdated (request status) suggestion from the requests log.
  2. Select download.png Download CSV option at the top-right of the details.

Request Asset Suggestions

  1. Select the Request Asset Suggestions button at the top-right of the Probable Infrastructure page.
  2. Select an owned company (excluding the parent and shell entity).
  3. Select Confirm.

Only one set of asset suggestions is displayed at a time. You may request another set of assets 30 days after the request.

Suggestion Feedback

Provide feedback on infrastructure suggestions. Feedback is crucial for improving the accuracy of our machine learning models and refining the suggestions.

Instructions:

  1. Select a successful (request status) suggestion from the requests log.
  2. Select a suggested asset.
  3. Select one of the following feedback options at the top-right of the Suggestion Evidence sheet:
    • upvote.png Good Suggestion
    • downvote.png Bad Suggestion

View Suggestions & Details

View suggestions and their details.

Instructions: Select a successful, outdated, or expired (request status) suggestion from the requests log.

View Suggestion Evidence

To view suggestion evidence:

  1. Select a successful, outdated, or expired (request status) suggestion from the requests log.
  2. Select a suggested asset.

You may expand (+) or collapse (-) the evidence information.

Components

Requests Log

The requests log featured in the Probable Infrastructure page provides an overview and records key details for Probable Infrastructure requests, which makes it critical for maintaining transparency and collaboration across teams. Use the requests log to efficiently track suggestion progress and manage historical data.

Company

The company with the generated asset suggestions.

Requested On

The date of request.

Expires On

The date when the suggested set of assets expires, which is set for 60 days after the request. Only one set of asset suggestions is displayed at a time. You may request another set of assets 30 days after the request.

Requested By

The user who requested the Probable Infrastructure.

Status

The status of the request. See request statuses. Refer to the request errors for troubleshooting if the request encountered an error.

Suggestions

A set of asset suggestions and their details.

Asset

The suggested asset, which is currently limited to domains.

Review this field to identify the specific infrastructure being suggested. Confirm if the asset is part of your organization’s digital footprint.

Date Requested

The date when the suggestion request was submitted.

Use this to track the suggestion's timeliness. Remember, suggestions become outdated after 30 days and expire after 60 days.

Feedback

The feedback.

Values:

  • Submitted – An attempt to add the asset to infrastructure and initiate the add assets workflow in the Infrastructure page was made from the Probable Infrastructure: Suggestions page.
  • Good Suggestion – The asset was confirmed to be valid.
  • Bad Suggestion – The asset was considered to be invalid.
Feedback By

The user who provided feedback.

Requested By

The user who submitted the request for the suggestion.

It is helpful for collaborative workflows to understand who initiated the request and coordinate reviews within the team.

Suggestion Evidence

Each suggestion shows the evidence information to help effectively review and classify the assets. Select the Add button at the top-right of the sheet to add assets.

Evidence

The supporting data and crucial context explaining why the asset is linked to the selected entity and why it is suggested as probable infrastructure.

Review the evidence provided to assess the strength of the attribution.

Expiration Date

Ensure timely review before the data becomes inaccessible.

Probable Infrastructure Request Statuses

Probable Infrastructure requests can have the following statuses:

Error

The request failed or timed out. Refer to the request errors for troubleshooting.

Expired

Data has expired after 60 days and is no longer accessible.

Outdated

Data is over 30 days old and considered stale; users can request new suggestions.

Pending

The request is created and running on internal servers, powered by GIA machine learning models.

Success

The request was successful, and data is now available for consultation.

  • March 24, 2026: Security Posture Management rebrand.
  • March 3, 2025: Provide feedback on suggestions.
  • December 13, 2024: Added actions, components, and table of contents.
  • December 5, 2024: Published.
Was this article helpful?
0 out of 0 found this helpful

Comments

0 comments

Please sign in to leave a comment.