Skip to content
Contact Sales

Skybox Security Unveils Next-Generation of Continuous Exposure Management Platform

Significant enhancements in attack surface and vulnerability management solutions empower organizations to mitigate cyber exposure risk with version 13.0 release.

SAN JOSE, Calif.
September 12, 2023

Skybox Security, a leading provider of Exposure Management solutions, today announced the next generation of its award-winning Continuous Exposure Management Platform. This 13.0 release introduces significant advancements to its Attack Surface and Vulnerability Management solutions, revolutionizing how enterprises manage and mitigate cyber exposure risk.

In today's complex threat landscape, organizations need to continuously manage their threat exposure based on the prioritized risks to their business. The Skybox platform now supports each stage of an enterprise’s continuous exposure management (CEM) program, from mapping the attack surface, through contextualization and risk-based prioritization, to final remediation. Our latest enhancements enable organizations to further improve their security posture and significantly reduce the risk of a successful attack.”
Mordecai Rosen | Chief Executive Officer Skybox Security

Attack Surface Management Delivers Complete Visibility

The Skybox Attack Surface Management solution delivers a comprehensive inventory and map of assets, applications, and users. It analyzes attack paths and simulates attacks. This culminates in a dynamic security model of the hybrid attack surface. Version 13.0 delivers significant new capabilities including:

New Attack Surface Map: This release unveils a stellar new way visualize, navigate, and interact with the attack surface map. Customers can now intuitively filter and highlight specific segments of their infrastructure. Assets can be grouped manually or automatically for enhanced comprehensibility. Enhanced search facilitates rapid asset location and navigation. This new map delivers new levels of clarity and precision.

Enhanced Attack Path Analysis: Understanding the importance of lateral attacks, threats from supply chain partners, and inside threats, Version 13.0 now includes the threat origin (Internet, Partner, Insider) in its attack path analysis. Knowing where the threat originates drives better prioritization and mitigation decision-making through better risk context.

LDAP Integration: Organizations can now seamlessly model Group Policy Objects (GPOs) from LDAP directories such as Microsoft Active Directory within the Skybox platform. This integration provides direct insights into security policy settings for users, organizational units, and computers.

Cloud Infrastructure Integration: Addressing the challenges posed by hybrid and cloud infrastructures, Version 13.0 centralizes cloud-related data, including AWS firewall rules and assets. This advancement enhances the platform’s capabilities in navigating complex infrastructures.

Vulnerability Management Deepens Exposure Insights

Skybox’s Vulnerability Management solution aggregates over 25 third-party threat intelligence feeds, combined with the in-house Skybox Threat Intelligence feed, to help prioritize threats with exposure-based risk — and remediate exposures with prescriptive guidance. With Version 13.0, organizations can:

Import Vulnerability Data: Customers can now consolidate their own vulnerability data from various sources within the platform, establishing a single solution for a variety of vulnerability management activities. This streamlined approach incorporates vulnerability data from other sources including penetration testing and in-house vulnerability sources.

New Business-Focused “Solutions View”: Version 13.0 introduces the “Solutions View,” designed to identify essential compensating controls tailored to specific business units or applications. This functionality empowers organizations to maximize security efforts by focusing on mitigations that align with their unique needs.

Celebrity Vulnerabilities: With Version 13.0, organizations gain the capability to swiftly identify and address celebrity vulnerabilities outlined in the Cybersecurity and Infrastructure Security Agency (CISA) Known Exploited Vulnerabilities (KEV) catalog. This proactive measure targets vulnerabilities frequently exploited by known threat actors.

SOAR Integration: Version 13.0 integrates seamlessly with Security Orchestration, Automation, and Response (SOAR) platforms through a set of focused REST APIs. This integration enhances investigation and remediation activities for the Security Operations Center (SOC).

Additional Enhancements Accelerate Compliance Journey

Updates to the Firewall and Network Assurance products encompass general user interface improvements and NIST 800-41 Access Policy updates. These enhancements expedite compliance testing, violation identification, and proactive resolution.

More information on Skybox Security exposure management is available at:

Continuous Exposure Management Platform

Visualize and analyze your hybrid attack surface with prioritized vulnerability management, and network security & policy management to continuously reduce exposure risk.

About Skybox Security

Over 500 of the largest and most security-conscious enterprises in the world rely on Skybox for the insights and assurance required to stay ahead of dynamically changing attack surfaces. Our SaaS-based Exposure Management Platform delivers complete visibility, analytics, and automation to quickly map, prioritize and remediate vulnerabilities across your organization. The vendor-agnostic solution intelligently optimizes security policies, actions, and change processes across all corporate networks and cloud environments. With Skybox, security teams can now focus on the most strategic business initiatives while ensuring enterprises remain protected.

The industry’s most comprehensive and accurate exposure analysis.

Leadership

Our executive team is comprised of seasoned Silicon Valley business leaders and cybersecurity experts.

Company

We pioneered the leading Security Posture Management Platform that powers proactive cybersecurity programs.