Huntress Service: External Recon
ID: 6b12f2a6-d78b-58fd-9f58-115ac31921b0
STIX ID: report--6b12f2a6-d78b-58fd-9f58-115ac31921b0
Feed Name: Huntress Blog
External Recon is a Huntress feature that continuously scans customer public IPs (using Shodan) to identify externally exposed services like RDP and SMB and surface them in a dashboard so organizations can prioritize mitigations. The document stresses this is not a replacement for vulnerability scans or pen tests, explains that the agent only captures the public IP (with NAT preventing mapping to a specific internal host), notes current limitations in rescan control, and describes planned roadmap items to broaden attack-surface visibility.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
