attack-surface-mapping

Enumerate and prioritize exploitable attack surfaces across external, internal, and cloud environments.

Updated May 22, 2026
One-click install
npx skills add https://github.com/drupadsachania/aegis-skills --skill attack-surface-mapping
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: attack-surface-mapping
Source: https://github.com/drupadsachania/aegis-skills/tree/main/skills/attack-surface-mapping
Command: npx skills add https://github.com/drupadsachania/aegis-skills --skill attack-surface-mapping

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

Attack Surface Mapping enumerates and prioritises an organisation's exploitable exposure across external, internal, and cloud surfaces, enabling proactive risk management.

Core Features & Use Cases

  • Enumerates external-facing assets, internal services, and cloud misconfigurations to build a comprehensive attack surface registry.
  • Prioritises findings using a risk scoring framework and maps assets to ATT&CK techniques for remediation planning.
  • Use Case: security operations teams conducting enterprise-wide posture reviews can run this skill to identify critical exposure and drive patching timelines.

Quick Start

Run the Attack Surface Mapping Skill to enumerate and prioritise an organisation's attack surface across cloud and on-prem assets.

Frequently Asked Questions about attack-surface-mapping

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I identify and prioritize exploitable assets across cloud and on-prem environments?

To identify exploitable assets, enumerate external-facing assets, internal services, and cloud misconfigurations, then prioritize findings using a risk scoring framework mapped to ATT&CK techniques for remediation planning.

What is attack surface mapping and when do I need it for security posture reviews?

Attack surface mapping is the process of enumerating and prioritizing an organization's exploitable exposure across external, internal, and cloud surfaces. You need it for enterprise security programs, cloud posture reviews, and incident readiness.

How does OSINT correlate with vulnerability discovery during attack surface enumeration?

OSINT coordinates with network discovery and vulnerability correlation workflows during attack surface enumeration to build a comprehensive registry. This maps findings to ATT&CK techniques and enforces deterministic phase-driven tasks with guardrails.

Can I use this attack surface mapping approach for enterprise-wide compliance and risk prioritization?

Yes, attack surface mapping suits enterprise security operations teams conducting posture reviews by identifying critical exposure and driving patching timelines. It applies risk prioritization and compliance frameworks to quantify exploitable surfaces.

What is the best way to map internal services and external assets to ATT&CK techniques?

The best way to map assets to ATT&CK techniques is running a phase-driven workflow that enumerates external and internal assets, correlates vulnerabilities, and outputs a risk-prioritized remediation plan based on the discovered attack surface.

Why use a risk scoring framework for attack surface management instead of raw vulnerability enumeration?

A risk scoring framework prioritizes discovered attack surface exposures, enabling proactive risk management and driving patching timelines. Raw enumeration lacks the risk prioritization needed to map critical findings to actionable remediation.