Third-party exposure monitoring
See when a vendor opens a new internet-facing service
Track public-facing changes across vendors and subsidiaries.
The question
Which supplier added a service since the last review?
A questionnaire captures what a supplier reported at one point in time. FullHunt adds dated, external observations that show when a host, service, or mapped vulnerability changes.
How it works
01
Add the organizations
Group the vendors, subsidiaries, or business units that belong in the review.
02
Establish the baseline
Record the domains, hosts, services, and infrastructure FullHunt can observe for each one.
03
Compare observations
Flag a new service, mapped CVE, credential record, or suspected lookalike domain.
04
Open the follow-up
Send the finding and observation time to the supplier owner or risk reviewer.
The records behind the answer
Organization map
The domains and infrastructure FullHunt associates with each monitored company.
Exposure changes
Services and other public observations that appeared, disappeared, or changed.
Mapped vulnerabilities
CVEs and exploit records tied to an observed internet-facing service.
Credential and domain alerts
Credential exposure, suspected phishing, and typosquatting records for review.
Put dated observations beside the supplier questionnaire.
FullHunt adds outside-in evidence to the contracts, attestations, and internal findings already in the review.
What you get
- Public hosts and services grouped by organization
- The date and time of each observation
- Alerts when monitored exposure changes
- Reports and API access for the existing GRC process
Check a vendor's public exposure.
Choose one supplier and see what FullHunt can monitor between reviews.