{"id":100226,"date":"2023-11-14T10:51:06","date_gmt":"2023-11-14T09:51:06","guid":{"rendered":"https:\/\/www.dgsspa.com\/?post_type=labs&#038;p=100226"},"modified":"2024-05-14T14:25:05","modified_gmt":"2024-05-14T13:25:05","slug":"attack-surface-check-and-remediation-ascr","status":"publish","type":"labs","link":"https:\/\/www.dgsspa.com\/en\/labs\/attack-surface-check-and-remediation-ascr\/","title":{"rendered":"Attack Surface Check and Remediation (ASCR)"},"content":{"rendered":"<section class=\"dgs-hero\">\n\t<div class=\"dgs-hero-bg\" style=\"background: url('https:\/\/www.dgsspa.com\/wp-content\/uploads\/2023\/11\/Banner_2560x192010.jpg') no-repeat 50% 50%; background-size: cover;\"><\/div>\n\t\t<div class=\"dgs-hero-ptrn \"><\/div>\n\t<div class=\"hero-inner\">\n\t\t\n\n<span class=\"wp-block-dgs-theme-category-title category-title\"><span class=\"label\">DGS CyLABs<\/span><\/span>\n\n\n\n<h1 class=\"hero-heading hero-heading--undefined\">Attack Surface Check and Remediation (ASCR)<\/h1>\n\n\n\n<div class=\"wp-block-dgs-theme-hero-text hero-text\"><p>We help our clients to accurately identify their attack surface, wherever it may be, and maintain proper visibility over time, according to the evolving needs of their business and to all the possible ways in which they deliver their services.<\/p><\/div>\n\n\t<\/div>\n<\/section>\n\n\n\n<section class=\"wp-block-group alignfull content-group has-global-padding is-layout-constrained wp-block-group-is-layout-constrained\" id=\"content\">\n<div class=\"wp-block-columns alignwide is-layout-flex wp-container-core-columns-is-layout-9d6595d7 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<span class=\"wp-block-dgs-theme-category-title category-title\"><span class=\"label\">DGS CyLABs<\/span><\/span>\n\n\n\n<h3 class=\"wp-block-heading has-cyan-color has-text-color\">Attack Surface Check and Remediation (ASCR)<\/h3>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<p>With the spread of Smart Working, the use of the Cloud and the relocation of workloads, the set of contact and exchange points between the IT infrastructure and the outside world has become progressively larger and more complex to identify. At the same time, the dissemination and availability of users\u2019 personal information has increased by leaps and bounds, creating a veritable market in the Dark Web.<\/p>\n\n\n\n<p>In order <strong>to establish effective protection mechanisms for the logical perimeter<\/strong> (whatever it may represent), <strong>it is necessary to have a broader view of the exposed attack surface<\/strong>, in order to allow the organization to quickly understand and visualize where the vulnerabilities are located within its ecosystem and to decide what corrective actions should be taken and with what level of urgency. <strong>The attack surface becomes, then, a global indicator of the security of a complex system<\/strong>, composed of people and systems (hardware and software) in which information is carried over multiple and increasingly dynamic channels.<\/p>\n\n\n\n<p><strong>The vectors through which malicious actors can attack our core resources have multiplied<\/strong> and cybercriminals can perform comprehensive analysis with relative ease on multiple sources of information related to our context, including information about employees and organizational chart, technologies placed in defense, and strategies employed.<\/p>\n\n\n\n<p>Being equipped with diverse active protection tools, that are close to the perimeter (E-mail Gateway, Next Generation Firewall or Web Application Firewall) rather than user-focused solutions (Endpoint Security systems or behavioral analyzers), does not mean that these items do not leave uncovered channels through which malware can breach.<\/p>\n\n\n\n<p>It is also important to be aware of the fact that <strong>the surface is constantly changing, requiring constant visibility and up-to-date security measures<\/strong>; the continuous development of applications that the market demands, the increasing automation of cloud resources and the demand for scalability mechanisms of the infrastructures supporting the services generate a constant and inexorable mutation of the ways in which our systems interact with the outside world.<\/p>\n\n\n\n<p>It is therefore necessary to strive for <strong>a holistic approach to the identification of the organization\u2019s attack surface<\/strong>, based on systems that can provide a single, homogeneous visibility of its current state and also give an indication of its qualitative and quantitative evolution over time, based on, for example, the mitigation actions taken or the adoption of new technologies or tools to support the business.<\/p>\n\n\n\n<p>In our <strong>Attack Surface Check and Remediation lab<\/strong>, we are constantly looking for that synergy between experts and technology platforms that can <strong>lead a company to always be in control of changes in its attack surface<\/strong>, constantly aligning it with the evolution of the IT infrastructure, the growth of application services and their availability, and the way its customers, employees or suppliers work.<\/p>\n\n\n\n<p>The <strong>products of Breach and Attack Simulation (BAS), massive and automated Penetration Testing<\/strong> \u2013 rather than Bug Bounty platforms or Dark Web analysis \u2013 offered by our technology partners, provide us with tools that, under the control of the experts of our Teams (Blue, Red and Purple), <strong>guarantee an approach to the<\/strong> <strong>discovery of the organization\u2019s weaknesses that is automatic, repetitive and massive but, at the same time, <em>\u201ctailor made\u201d<\/em><\/strong> thanks to the sensitivity and experience of our professionals.<\/p>\n\n\n\n<p>The focus of our lab (<strong>ASCR CyLAB<\/strong>) is on <strong>defining different use cases in order to test market-leading products on them and measure their effectiveness<\/strong> in the face of different attack techniques, detecting the channels through which threats can creep into an organization.<\/p>\n\n\n\n<p>Customization to the operational context and a tailor-made approach allow <strong>DGS<\/strong> to <strong>propose solutions to its customers that can identify and maintain the right visibility over time on their attack surface<\/strong> and apply corrective actions as quickly and effectively as possible.<\/p>\n\n\n\n<p>To find out what other areas we operate in at our <strong>CyLABs<\/strong>, <a href=\"https:\/\/www.dgsspa.com\/en\/dgs-cylabs\/\">CLICK HERE<\/a>.<\/p>\n<\/div>\n<\/div>\n<\/section>\n\n\n\n<div class=\"wp-block-group alignfull news-carousel has-global-padding is-layout-constrained wp-block-group-is-layout-constrained\">\n<h3 class=\"wp-block-heading has-cyan-color has-text-color\">Related topics<\/h3>\n\n\n\n<section class=\"wp-block-query alignfull posts-loop is-layout-flow wp-block-query-is-layout-flow\"><ul class=\"wp-block-post-template is-layout-flow wp-block-post-template-is-layout-flow\"><li class=\"wp-block-post post-100211 labs type-labs status-publish has-post-thumbnail hentry\">\n<h2 class=\"wp-block-post-title\">Identity Threat Detection and Response (ITDR)<\/h2>\n\n\n<div class=\"wp-block-group is-layout-flex wp-block-buttons has-black-color has-text-color has-global-padding is-content-justification-left is-layout-constrained wp-container-core-group-is-layout-8c890d92 wp-block-group-is-layout-constrained\">\n<div class=\"wp-block-group wp-block-button is-style-plus-icon has-global-padding is-layout-constrained wp-block-group-is-layout-constrained\">\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n<a class=\"wp-block-button__link wp-element-button wp-block-read-more has-text-color has-cyan-color\" href=\"https:\/\/www.dgsspa.com\/en\/labs\/identity-threat-detection-and-response-itdr\/\" target=\"_self\">Scopri di pi\u00f9<span class=\"screen-reader-text\">: Identity Threat Detection and Response (ITDR)<\/span><\/a><\/div>\n<\/div>\n\n<\/li><li class=\"wp-block-post post-100213 labs type-labs status-publish has-post-thumbnail hentry\">\n<h2 class=\"wp-block-post-title\">Cloud Native Application Protection Platform (CNAPP)<\/h2>\n\n\n<div class=\"wp-block-group is-layout-flex wp-block-buttons has-black-color has-text-color has-global-padding is-content-justification-left is-layout-constrained wp-container-core-group-is-layout-8c890d92 wp-block-group-is-layout-constrained\">\n<div class=\"wp-block-group wp-block-button is-style-plus-icon has-global-padding is-layout-constrained wp-block-group-is-layout-constrained\">\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n<a class=\"wp-block-button__link wp-element-button wp-block-read-more has-text-color has-cyan-color\" href=\"https:\/\/www.dgsspa.com\/en\/labs\/cloud-native-application-protection-platform-cnapp\/\" target=\"_self\">Scopri di pi\u00f9<span class=\"screen-reader-text\">: Cloud Native Application Protection Platform (CNAPP)<\/span><\/a><\/div>\n<\/div>\n\n<\/li><li class=\"wp-block-post post-100217 labs type-labs status-publish has-post-thumbnail hentry\">\n<h2 class=\"wp-block-post-title\">eXtended Detection and Response (xDR)<\/h2>\n\n\n<div class=\"wp-block-group is-layout-flex wp-block-buttons has-black-color has-text-color has-global-padding is-content-justification-left is-layout-constrained wp-container-core-group-is-layout-8c890d92 wp-block-group-is-layout-constrained\">\n<div class=\"wp-block-group wp-block-button is-style-plus-icon has-global-padding is-layout-constrained wp-block-group-is-layout-constrained\">\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n<a class=\"wp-block-button__link wp-element-button wp-block-read-more has-text-color has-cyan-color\" href=\"https:\/\/www.dgsspa.com\/en\/labs\/extended-detection-and-response-xdr\/\" target=\"_self\">Scopri di pi\u00f9<span class=\"screen-reader-text\">: eXtended Detection and Response (xDR)<\/span><\/a><\/div>\n<\/div>\n\n<\/li><li class=\"wp-block-post post-100220 labs type-labs status-publish has-post-thumbnail hentry\">\n<h2 class=\"wp-block-post-title\">Advanced Threat Detection Intelligence (ATDI)<\/h2>\n\n\n<div class=\"wp-block-group is-layout-flex wp-block-buttons has-black-color has-text-color has-global-padding is-content-justification-left is-layout-constrained wp-container-core-group-is-layout-8c890d92 wp-block-group-is-layout-constrained\">\n<div class=\"wp-block-group wp-block-button is-style-plus-icon has-global-padding is-layout-constrained wp-block-group-is-layout-constrained\">\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n<a class=\"wp-block-button__link wp-element-button wp-block-read-more has-text-color has-cyan-color\" href=\"https:\/\/www.dgsspa.com\/en\/labs\/advanced-threat-detection-intelligence-atdi\/\" target=\"_self\">Scopri di pi\u00f9<span class=\"screen-reader-text\">: Advanced Threat Detection Intelligence (ATDI)<\/span><\/a><\/div>\n<\/div>\n\n<\/li><li class=\"wp-block-post post-100222 labs type-labs status-publish has-post-thumbnail hentry\">\n<h2 class=\"wp-block-post-title\">Business Email Compromise (BEC)<\/h2>\n\n\n<div class=\"wp-block-group is-layout-flex wp-block-buttons has-black-color has-text-color has-global-padding is-content-justification-left is-layout-constrained wp-container-core-group-is-layout-8c890d92 wp-block-group-is-layout-constrained\">\n<div class=\"wp-block-group wp-block-button is-style-plus-icon has-global-padding is-layout-constrained wp-block-group-is-layout-constrained\">\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n<a class=\"wp-block-button__link wp-element-button wp-block-read-more has-text-color has-cyan-color\" href=\"https:\/\/www.dgsspa.com\/en\/labs\/business-email-compromise-bec\/\" target=\"_self\">Scopri di pi\u00f9<span class=\"screen-reader-text\">: Business Email Compromise (BEC)<\/span><\/a><\/div>\n<\/div>\n\n<\/li><li class=\"wp-block-post post-100224 labs type-labs status-publish has-post-thumbnail hentry\">\n<h2 class=\"wp-block-post-title\">Critical Infrastructure &amp; IoT Protection (ICS &amp; IoT Protection)<\/h2>\n\n\n<div class=\"wp-block-group is-layout-flex wp-block-buttons has-black-color has-text-color has-global-padding is-content-justification-left is-layout-constrained wp-container-core-group-is-layout-8c890d92 wp-block-group-is-layout-constrained\">\n<div class=\"wp-block-group wp-block-button is-style-plus-icon has-global-padding is-layout-constrained wp-block-group-is-layout-constrained\">\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n<a class=\"wp-block-button__link wp-element-button wp-block-read-more has-text-color has-cyan-color\" href=\"https:\/\/www.dgsspa.com\/en\/labs\/critical-infrastructure-iot-protection-ics-iot-protection\/\" target=\"_self\">Scopri di pi\u00f9<span class=\"screen-reader-text\">: Critical Infrastructure &amp; IoT Protection (ICS &amp; IoT Protection)<\/span><\/a><\/div>\n<\/div>\n\n<\/li><\/ul><\/section>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>We experiment with solutions that help our customers keep an eye on changes in their attack surface, to defend their core assets from cyber attacks.<\/p>\n","protected":false},"author":3,"featured_media":97829,"template":"","meta":{"_acf_changed":false,"dgs_labs_date_in":"","dgs_labs_date_out":"","dgs_labs_date_in_out":"","dgs_labs_location":"","footnotes":""},"tags":[],"corsi":[],"labs":[],"class_list":["post-100226","labs","type-labs","status-publish","has-post-thumbnail","hentry"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.6 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>DGS<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:site_name\" content=\"DGS\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.dgsspa.com\/wp-content\/uploads\/2022\/12\/dgs-logo-opengraph.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"630\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:site\" content=\"@dgs_group\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"CollectionPage\",\"@id\":null,\"url\":\"\",\"name\":\"\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.dgsspa.com\\\/en\\\/#website\"},\"inLanguage\":\"en-US\"},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.dgsspa.com\\\/en\\\/#website\",\"url\":\"https:\\\/\\\/www.dgsspa.com\\\/en\\\/\",\"name\":\"DGS spa\",\"description\":\"DGS SPA\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.dgsspa.com\\\/en\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.dgsspa.com\\\/en\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.dgsspa.com\\\/en\\\/#organization\",\"name\":\"DGS spa\",\"url\":\"https:\\\/\\\/www.dgsspa.com\\\/en\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.dgsspa.com\\\/en\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.dgsspa.com\\\/wp-content\\\/uploads\\\/2022\\\/11\\\/Logo_DGS.png\",\"contentUrl\":\"https:\\\/\\\/www.dgsspa.com\\\/wp-content\\\/uploads\\\/2022\\\/11\\\/Logo_DGS.png\",\"width\":400,\"height\":400,\"caption\":\"DGS spa\"},\"image\":{\"@id\":\"https:\\\/\\\/www.dgsspa.com\\\/en\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/gruppoDGS\",\"https:\\\/\\\/x.com\\\/dgs_group\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/dgsspa\\\/\",\"https:\\\/\\\/www.youtube.com\\\/channel\\\/UCTrU_JDYEEOcYXNjL5a9k5g\",\"https:\\\/\\\/www.instagram.com\\\/dgs_spa\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"DGS","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"\/","og_locale":"en_US","og_type":"article","og_site_name":"DGS","og_image":[{"width":1200,"height":630,"url":"https:\/\/www.dgsspa.com\/wp-content\/uploads\/2022\/12\/dgs-logo-opengraph.png","type":"image\/png"}],"twitter_card":"summary_large_image","twitter_site":"@dgs_group","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"CollectionPage","@id":null,"url":"","name":"","isPartOf":{"@id":"https:\/\/www.dgsspa.com\/en\/#website"},"inLanguage":"en-US"},{"@type":"WebSite","@id":"https:\/\/www.dgsspa.com\/en\/#website","url":"https:\/\/www.dgsspa.com\/en\/","name":"DGS spa","description":"DGS SPA","publisher":{"@id":"https:\/\/www.dgsspa.com\/en\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.dgsspa.com\/en\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.dgsspa.com\/en\/#organization","name":"DGS spa","url":"https:\/\/www.dgsspa.com\/en\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.dgsspa.com\/en\/#\/schema\/logo\/image\/","url":"https:\/\/www.dgsspa.com\/wp-content\/uploads\/2022\/11\/Logo_DGS.png","contentUrl":"https:\/\/www.dgsspa.com\/wp-content\/uploads\/2022\/11\/Logo_DGS.png","width":400,"height":400,"caption":"DGS spa"},"image":{"@id":"https:\/\/www.dgsspa.com\/en\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/gruppoDGS","https:\/\/x.com\/dgs_group","https:\/\/www.linkedin.com\/company\/dgsspa\/","https:\/\/www.youtube.com\/channel\/UCTrU_JDYEEOcYXNjL5a9k5g","https:\/\/www.instagram.com\/dgs_spa"]}]}},"_links":{"self":[{"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/labs\/100226"}],"collection":[{"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/labs"}],"about":[{"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/types\/labs"}],"author":[{"embeddable":true,"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/users\/3"}],"version-history":[{"count":5,"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/labs\/100226\/revisions"}],"predecessor-version":[{"id":101524,"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/labs\/100226\/revisions\/101524"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/media\/97829"}],"wp:attachment":[{"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/media?parent=100226"}],"wp:term":[{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/tags?post=100226"},{"taxonomy":"corsi","embeddable":true,"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/corsi?post=100226"},{"taxonomy":"labs","embeddable":true,"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/labs?post=100226"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}