easm-review-attack-surface

Query EASM findings and lookalike domains to generate prioritized risk reports.

44|24|Updated May 29, 2025
One-click install
npx skills add https://github.com/zscaler/zscaler-mcp-server --skill easm-review-attack-surface
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: easm-review-attack-surface
Source: https://github.com/zscaler/zscaler-mcp-server/tree/main/skills/easm/review-attack-surface
Command: npx skills add https://github.com/zscaler/zscaler-mcp-server --skill easm-review-attack-surface

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Review the organization's external attack surface by retrieving EASM findings, evaluating exposed services, and identifying lookalike domains to prioritize risk.

Core Features & Use Cases

  • List EASM Organizations to determine scope
  • Retrieve Findings to understand exposure across assets
  • Check for Lookalike Domains to detect phishing risks
  • Categorize and Prioritize findings to produce a prioritized risk report
  • Generate a comprehensive External Attack Surface Review report for executives and security teams

Quick Start

Start by listing your EASM organizations and retrieving findings for the target organization to generate a prioritized exposure report.

Frequently Asked Questions about easm-review-attack-surface

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I assess external exposure and prioritize risks for my organization?

To assess external exposure, query EASM findings and lookalike domains to evaluate exposed services and categorize risks. This generates a prioritized risk report for security teams and executives, enabling focused remediation across the external attack surface.

What is an external attack surface review and when do I need it?

An external attack surface review discovers exposed services and phishing risks via lookalike domains to prioritize risk. It is needed during security reviews, readiness assessments, and ongoing posture monitoring to maintain awareness of external vulnerabilities.

How do I generate an external attack surface report for executives?

Generate an external attack surface report by listing EASM organizations, retrieving findings for the target scope, and checking for lookalike domains. The process categorizes and prioritizes findings to produce a comprehensive exposure review for executives.

Can I check for lookalike domains to detect phishing risks using EASM data?

Yes, you can check for lookalike domains to detect phishing risks by querying EASM findings. This identifies potential malicious domains mimicking your organization, allowing you to include these threats in your prioritized risk and exposure reports.

Do I need EASM data and organization scope to produce a security report?

Yes, you need access to EASM data and a defined organization scope to produce a repeatable, prioritized security report. Specifying output formats alongside this scope ensures the findings are structured correctly for your security teams.

What is the best way to monitor ongoing security posture across sub-entities?

The best way to monitor ongoing security posture is querying EASM findings across organizations and sub-entities to evaluate exposed services. This repeatable process tracks external exposure changes over time, producing updated prioritized reports for continuous readiness assessments.