If you head to the Discovery section, you'll find assets we've discovered – some of which you may want to add for scanning:
Cloud detection
🎫 Plan availability: Cloud detection is available on all plans.
Should you add a target that belongs to a cloud account that has not been added, we'll let you know:
Should you hit '+Add integration,' you'll be walked through the standard steps:
If you hit 'No thanks,' the cloud detection prompt will disappear, as shown below:
Container image detection
🎫 Plan availability: Container image detection is available on all plans.
Container images and tags discovered across all connected registries will appear on the Container images page as shown below:
More information on this feature can be found in this article.
Domain, subdomain, login, & API detection
🎫 Plan availability: Domain, subdomain, login, & API detection are available on Enterprise and Vanguard plans.
These sections display detections based on the targets already added to your account, including potentially related domains and subdomains, as well as any identified login pages or APIs:
Domain detection
This is a list of domains relating to existing apex domains that have been added to the portal. ie, if you have added exampletest.com, we might return exampletester.com or exampletest.co.uk. On this page, you'll see something like this:
From this page, you can sort by clicking any column header:
Domain — the newly discovered domain
Related targets — the existing target the domain appears related to (may show a (deleted) status)
Confidence — how confident we are that the detected domain is related to your existing target
You can also:
Report a missing domain
Add a discovered domain as a target (use
+ Addfor a bulk selection, or+ Add targeton an individual row)Export the list as a CSV file
Exclude domains from the list
More information on this feature can be found in this article.
Subdomain detection
This is a list of all the subdomains we found related to targets already added to your account. When clicked, you'll see something like this:
From this page, you can sort the subdomains table by clicking any column header — Subdomain, IP address, Open ports, DNS Provider, or First seen — and sort the domains list on the left using the Sort by dropdown.
The Discovered, Added, and Excluded tabs switch between subdomains not yet added as targets, those already added, and those you've excluded.
You can also:
Add a discovered subdomain as a target using the + on its row
Exclude individual subdomains
Use the
•••menu on a domain to exclude the entire apex domain (and all its subdomains), or to report missing subdomainsSearch and filter the list
More information on this feature can be found in this article.
Login detection
If our automated detection tools have found what we think is a login page, you may need to add authentication in order to scan this asset properly. If you have an application license available, you can do this immediately; if you don't, you'll need to purchase one.
API detection
Any targets on this list are here because our detection tools have found an API present on the asset. The addition of an API schema could improve scan coverage and ensure that the APIs are scanned with application checks (requires an application license):
Cloud integrations
🎫 Plan availability: Cloud integrations are available on all plans.
This is where you can find previously added cloud accounts and all the associated cloud assets supported by Intruder. In the screenshot below, 1 target has been added for scanning:
For more information on integrating your cloud accounts, please head here.













