You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
description: "Adding and managing Assets in ProjectDiscovery Cloud Platform"
2
+
title: "Adding Assets"
3
+
description: "Learn how to add and manage assets in ProjectDiscovery Cloud Platform"
4
4
sidebarTitle: "Adding Assets"
5
5
---
6
-
## Summary
7
-
Assets are any hosts added to ProjectDiscovery Cloud Platform (PDCP) for scanning. Hosts can be a URL, an IP address, or a CIDR range.
8
6
9
-
Assets can be added through either the Assets tab, or during the creation of a scan. Regardless of the path, adding assets to the Cloud Platform is the first step to running a scan and securing your tech stack against exploitable vulnerabilities.
Assets in ProjectDiscovery Cloud Platform can be any hosts you want to monitor - URLs, IP addresses, or CIDR ranges. There are three primary methods to add assets:
12
10
13
-
From the Assets tab, there are three methods to add your assets:
14
-
- Add New Assets
15
-
- Connect Cloud Services
16
-
- HttpX Integration
11
+
<CardGroupcols={3}>
12
+
<Card
13
+
title="Asset Discovery"
14
+
icon="magnifying-glass"
15
+
href="#asset-discovery">
16
+
Automatically discover and monitor assets from your root domains
17
+
</Card>
18
+
<Card
19
+
title="Cloud Services"
20
+
icon="cloud"
21
+
href="/cloud/integrations#cloud-asset-discovery">
22
+
Connect cloud providers to import and sync assets automatically
Programmatically add and manage assets using our REST API
29
+
</Card>
30
+
</CardGroup>
17
31
18
-
Each unique path, including those with specified ports will be added as an individual asset for scanning. If you have questions about your specific setup, get in touch with us at [email protected].
32
+
## Asset Discovery
19
33
20
-
## Discover New Assets
34
+
The fastest way to get started is through our asset discovery feature:
21
35
22
-
Discovery is the easiest method of importing assets into PDCP for vulnerability scanning.
36
+
1. Navigate to **Assets → Add New Assets**
37
+
2. Enter root domains/CIDR/IPs based on your plan:
-**Scope**: manually input your list of up to 10 root domains in the Free plan, or up to 100 root domains in Pro.
43
+
✓ Basic subdomain discovery
27
44
28
-
- Auto Discovery is enabled by default and will automatically discover your assets including subdomains, open ports, and other web technologies. Port scanning and technology detection is available in Pro and Enterprise plans only.
29
-
-*Note: Disable Auto Discovery to restrict upload to your specified asset list.*
45
+
✓ HTTP probing
30
46
31
-
- Domain, IP address, or CIDR. For CIDR ranges each individual IP will be added as a single asset.
47
+
✓ Basic technology detection
32
48
33
-
-**Advanced**: Turning off Auto Discovery disables all discovery settings.
49
+
✓ Limited cloud asset discovery
50
+
</Card>
34
51
35
-
- Use Advanced to modify individual discovery settings for subdomains, open ports, etc.
36
-
- Customize the frequency of Auto Discovery to continuously monitor for new assets.
Cloud connections can be configured to check for updates to your assets and ensure your information is up to date.
65
+
✓ Custom discovery schedules
49
66
50
-
For the majority of integrations, you only need to provide a name and the token or access details generated by the provider.
67
+
✓ CIDR range scanning
51
68
52
-
## HttpX Integration
69
+
✓ IP block discovery
53
70
54
-
See HttpX Integration [docs](https://docs.projectdiscovery.io/tools/httpx/running#ui-dashboard-pdcp-integration) and [blog](https://blog.projectdiscovery.io/introducing-httpx-dashboard-2/) for more details.
71
+
✓ Network perimeter mapping
72
+
</Card>
55
73
56
-
## Managing Assets
74
+
<Cardtitle="Enterprise Plan"icon="building">
75
+
✓ Custom limits
57
76
58
-
Once your assets are added successfully they display in the asset list.
77
+
✓ Advanced asset enrichment
59
78
60
-
- Use the context menu to rename, **Update** to add or remove assets, Re-Discover, or Delete.
61
-
- Uploaded assets are immediately available to use in scans.
62
-
- Assets that are part of an existing scan cannot be deleted.
79
+
✓ Advanced cloud correlation
80
+
81
+
✓ Custom enrichment rules
82
+
83
+
✓ Dedicated discovery nodes
84
+
85
+
✓ Priority asset updates
86
+
87
+
✓ ASN-based discovery
88
+
89
+
✓ Certificate chain analysis
90
+
91
+
✓ Subsidiary discovery
92
+
93
+
✓ Related domain correlation
94
+
95
+
✓ Company hierarchy mapping
96
+
97
+
✓ Acquisition tracking
98
+
</Card>
99
+
</CardGroup>
100
+
101
+
<Note>
102
+
Discovery features can be customized for Enterprise plans. Contact our [sales team](mailto:[email protected]) for custom requirements.
description: "A high-level overview of the PDCP Asset functionality"
2
+
title: "Asset Discovery and Management"
4
3
sidebarTitle: "Overview"
5
4
---
6
5
7
-
## Overview
8
-
In the ProjectDiscovery Cloud Platform (PDCP), an asset is any host or target for vulnerability scanning. An asset is defined as the combination of a host (subdomain or IP address) and a specific port.
6
+
Attack Surface Management (ASM) is the continuous discovery, inventory, classification, and monitoring of your external-facing and internal assets. These assets include any internet-facing systems, cloud resources, or services that could potentially be accessed by attackers.
9
7
10
-
Assets can be discovered via Auto-Discovery from a root domain or specified IP/CIDR range. Note: IP and CIDR range discovery and enrichment are only available on Pro and Enterprise plans.
Assets can also be imported through our cloud integrations or direct upload through a .txt file.
29
+
## Our Approach
13
30
14
-
Once assets are added to PDCP, they can be selected as targets in a vulnerability scan.
31
+
ProjectDiscovery combines battle-tested open-source tools with cloud-native capabilities:
15
32
16
-

33
+
<CardGroupcols={2}>
34
+
<Cardtitle="Open Source Foundation"icon="github">
35
+
✓ [Subfinder](https://github.com/projectdiscovery/subfinder) for subdomain discovery
17
36
18
-
## FAQ
37
+
✓ [Naabu](https://github.com/projectdiscovery/naabu) for port scanning
19
38
20
-
### General
21
-
**Is there a limitation to how many root domains I can run auto-discovery on?**
39
+
✓ [Httpx](https://github.com/projectdiscovery/httpx) for HTTP probing
22
40
23
-
The Free tier supports up to 10 root domain discoveries per month, while Pro supports 100 domains per month and Enterprise offers custom limits.
41
+
✓ [Cloudlist](https://github.com/projectdiscovery/cloudlist) for cloud assets
24
42
25
-
**What kind of Assets are supported?**
43
+
✓ [TLSx](https://github.com/projectdiscovery/tlsx) for certificate analysis
26
44
27
-
Assets or hosts can be a URL, an IP address, a root domain, or a CIDR range.
45
+
✓ [Uncover](https://github.com/projectdiscovery/uncover) for exposed asset search
46
+
</Card>
47
+
<Cardtitle="Cloud Platform Features"icon="cloud">
48
+
✓ Advanced subdomain enumeration
28
49
29
-
**Can everyone in my team see all the Assets that were added to my environment?**
50
+
✓ Port scanning (1-65535)
30
51
31
-
Yes, all assets in your environment are shared across your team.
52
+
✓ Deep technology fingerprinting
32
53
33
-
### Assets and Scans
54
+
✓ Cloud asset discovery
34
55
35
-
**Can I exempt specific assets from a scan?**
56
+
✓ ASN-based discovery
36
57
37
-
Building a new scan requires you to choose assets as part of the scan configuration, so yes, scans will apply to whatever assets you include in the scan.
58
+
✓ Certificate chain analysis
38
59
39
-
### Adding and Modifying Assets
60
+
</Card>
61
+
</CardGroup>
40
62
41
-
**What's the difference between Add Assets, cloud integration?**
63
+
## Getting Started
42
64
43
-
- Add allows you to choose a list of individual assets or root domains to add as a list or TXT file.
44
-
45
-
- Enabling **Auto Discovery** automatically enumerates associated subdomains and open ports. Each subdomain or unique path identified is added as individual asset.
65
+
Choose your preferred method to start building your asset inventory:
46
66
47
-
- Cloud Integrations connect your cloud service provider and import any assets identified.
67
+
<Steps>
68
+
1.**Asset Discovery**
69
+
Start with root domains and let our platform discover your assets automatically. [Learn more →](/cloud/assets/adding-assets#asset-discovery)
48
70
49
-
**Can I edit existing Assets?**
71
+
2.**Cloud Integration**
72
+
Connect your cloud providers for automated asset sync. [View providers →](/cloud/integrations#cloud-asset-discovery)
50
73
51
-
Yes! Assets that are added to PDCP can be renamed.
74
+
3.**API Integration**
75
+
Programmatically manage assets using our REST API. [API docs →](https://docs.projectdiscovery.io/api-reference/enumerations/create-enumeration)
76
+
</Steps>
52
77
53
-
**Can I delete Assets?**
54
-
55
-
You can delete any assets, however assets that are included in a scan will generate an error.
78
+
<Note>
79
+
Need help getting started? Contact our [support team](mailto:[email protected]) or join our [Discord community](https://discord.gg/projectdiscovery).
@@ -9,14 +10,31 @@ Sign up for [ProjectDiscovery Cloud Platform](https://cloud.projectdiscovery.io/
9
10
Have a complex company use case? Get [Enterprise grade assistance](https://projectdiscovery.io/request-demo)
10
11
</Tip>
11
12
12
-
## What is ProjectDiscovery Cloud Platform?
13
+
ProjectDiscovery Cloud Platform combines real-world attack detection with comprehensive vulnerability management. By leveraging our battle-tested open-source security tools used by over 100,000 security professionals worldwide, our platform helps organizations focus on what matters most - truly exploitable security risks.
13
14
14
-
ProjectDiscovery Cloud Platform combines real-world attack detection with comprehensive vulnerability management. By leveraging our battle-tested open-source security tools used by over 100,000 security professionals worldwide, our platform helps organizations focus on what matters most - truly exploitable security risks:
15
+
While traditional VM tools focus on CVE matching and version scanning, ProjectDiscovery Cloud takes an attacker's perspective:
15
16
16
-
-**Detect Real Threats**: Stay ahead of trending internet attacks with community-powered security templates
17
-
-**Validate Exploitability**: Focus only on vulnerabilities that attackers can actually exploit
18
-
-**Streamline Security**: Transform traditional vulnerability management into a risk-based program
19
-
-**Accelerate Response**: Quickly validate and remediate exploitable threats with clear proof of concepts
Detect exploitable misconfigurations and security gaps that traditional scanners miss
24
+
</Card>
25
+
26
+
<Cardtitle="Proof of Concept"icon="microscope">
27
+
Every finding includes clear evidence and reproduction steps
28
+
</Card>
29
+
30
+
<Cardtitle="AI-Powered Detection"icon="robot">
31
+
Write custom vulnerability detections with AI assistance and knowledge sharing
32
+
</Card>
33
+
34
+
<Cardtitle="Community-Powered"icon="users">
35
+
Leverage our global open-source community to rapidly detect emerging threats
36
+
</Card>
37
+
</CardGroup>
20
38
21
39
Our platform uniquely combines Vulnerability Management, Attack Surface Management, and Continuous Threat Exposure Management into a single, exploitability-focused solution with zero setup overhead - helping you manage security risks the way attackers see them, right from day one.
- Full visibility into detection methods through Nuclei templates
63
-
- Custom template creation for your specific needs
64
-
- Clear remediation steps for each finding
65
-
- Integration with your existing security workflow
52
+
## Getting Started
53
+
54
+
<CardGroupcols={2}>
55
+
<Card
56
+
title="Asset Discovery & Management"
57
+
icon="radar"
58
+
href="/cloud/assets/overview">
59
+
Continuous discovery and monitoring of your attack surface across multi-cloud environments, domains, and infrastructure. Powered by our battle-tested open-source tools and cloud-native capabilities for comprehensive asset visibility.
60
+
</Card>
61
+
62
+
<Card
63
+
title="External Vulnerability Scanning"
64
+
icon="globe"
65
+
href="/cloud/scanning/createscans">
66
+
Automated and precise external scanning with zero false positives. Every finding includes proof of concept and clear remediation steps. Supports both automated continuous monitoring and targeted assessments.
67
+
</Card>
68
+
69
+
<Card
70
+
title="Internal Network Scanning"
71
+
icon="network-wired"
72
+
href="/cloud/scanning/nuclei-scan">
73
+
Secure internal vulnerability assessment through local scanning or cloud-managed TunnelX. Identify critical internal vulnerabilities before attackers can exploit them for lateral movement.
74
+
</Card>
75
+
76
+
<Card
77
+
title="Integrations"
78
+
icon="puzzle-piece"
79
+
href="/cloud/integrations">
80
+
Seamless integration with your security stack including Slack, Teams, JIRA, GitHub, and custom webhooks. Automate vulnerability management and streamline your security operations.
81
+
</Card>
82
+
</CardGroup>
66
83
67
84
If you're new to ProjectDiscovery:
68
85
- Get started with a [free ProjectDiscovery Cloud account](cloud.projectdiscovery.io)
69
-
- Learn about the [key benefits](/cloud/features) of Cloud
0 commit comments