CyCognito is always seeking additional methods to discover customer external-facing assets. One such resource is an integration with content delivery network (CDN) management systems. Many organizations manage most or all their DNS records with CDNs, as they provide IT and security teams with centralized management visibility.
DNS records are very important for tracking externally exposed assets, since they contain the organization’s FQDNs, CNAMES, and resolved IP addresses, which may point to cloud, on-prem, or 3rd party-owned assets. CDNs may also contain old, unmaintained, and forgotten DNS records that could point to live but unmaintained assets with significant vulnerabilities.
CyCognito is excited to announce the addition of Cloudflare CDN support to its Cloud Connector capabilities. This new integration allows users to connect their CyCognito account to their Cloudflare accounts, enabling the connector to access and analyze all DNS records managed within. Once assets from DNS records are fetched, CyCognito performs discovery of additional related assets and automated vulnerability testing on all discovered assets (Figure 1). This approach greatly extends the asset discovery capability, allowing organizations to achieve comprehensive visibility into their assets, including those that may have become outdated or forgotten over time.
Figure 1: CyCognito Cloud Connector For Cloudflare Workflow
There are multiple benefits associated with this automated integration into the CyCognito platform:
Follow these steps to leverage the enhanced capabilities of the CyCognito Cloud Connector for Cloudflare:
Figure 2: CyCognito Cloudflare Connector Configuration
Cloud Connectors are a built-in feature of the CyCognito platform. Cloud Connectors offer organizations comprehensive visibility into external-facing assets managed within their cloud infrastructures. By seamlessly integrating with cloud service providers such as AWS, Azure, and GCP, CyCognito’s Cloud Connector uses the discovered cloud assets as seeds for further asset discovery.
In this way the CyCognito platform identifies assets that might otherwise go unnoticed—like web applications, email servers, and external IaaS—enabling a more extensive mapping of the organization’s attack surface.
Each identified asset undergoes rigorous automated security testing to detect vulnerabilities and determine asset security scores. All assets and security findings are integrated into the customer’s overall attack surface to provide a comprehensive external attack surface state analysis.
Incorporating the CyCognito Cloud Connector for Cloudflare into your security strategy ensures that your organization’s assets are comprehensively monitored and protected. With the new Cloudflare integration, you can now achieve even greater visibility and control over your digital footprint.
Current customers, enable the Cloud Connector in your CyCognito platform today to fortify your security posture and stay ahead of potential threats!
Interested in learning more? Reach out today to schedule a demo of the CyCognito platform and see how we will help your team reduce noise from dynamic IP addressed-based assets and maintain a continuous security posture.
Naftali is a senior product manager at CyCognito, with extensive experience at leading products and features in the cyber-security domain.
Download the report now to stay ahead of emerging threats and strengthen your organization’s security posture for 2024.
Download the report to learn about the historical trends behind the emergence of exposure management, how to develop a strategic plan and assemble a team to smoothly transition frameworks, and example tech stacks to consider for your organization.
Get a free scan of your attack surface and gain valuable insight into your organization's risk posture by allowing CyCognito to discover, contextualize, and test externally exposed assets on a portion of your parent company or a single subsidiary.
Discover insights on application security, exposure management and other key topics below.
The definitive guide to attack surface management. Learn everything you need to know to reduce your cyber security risk with attack surface management.
Exposure management is a set of processes which allow organizations to assess the visibility, accessibility, and risk factors of their digital assets.
Vulnerability assessment is the process of identifying, quantifying, and prioritizing vulnerabilities in a system.
Explore CyCognito modules ASM, AST and EI in the resources below.
Scalable, continuous, and comprehensive testing for all external assets, all the time.
CyCognito Automated Security Testing dynamically applies payload-based testing techniques across your entire external attack surface.
CyCognito Exploit Intelligence uses threat intelligence about attackers’ behavior and exploitability for enhanced prioritization.