Seraxi
Seraxi Lens

External + internal attack surface, on one graph

Lens shows how an open port the internet can see reaches the exact internal application behind it — the full outside-in path on one live security graph. A complete EASM platform with its own external scanner built in, it unifies the scanners you already run, scores everything with one Lens Risk Score, and surfaces shadow AI no one registered.

From open port to the app behind it

Lens unifies external and internal surface on one graph and scores risk where it matters.

  1. 1

    Discover

    Find exposed hosts, services and shadow IT with the built-in external scanner, and pull in the scanners you already run.

  2. 2

    Map

    Draw external and internal surface onto one live security graph — and trace each open port to the exact internal app behind it.

  3. 3

    Prioritize

    Score everything with one Lens Risk Score, propagated by blast radius, so the next fix is the one that matters.

See it in action

The attack surface, on a live graph.

Lens resolves your external footprint onto a navigable graph, flags shadow AI and exposed services, and scores each finding by blast radius — so the next fix is the one that actually matters.

lens · asset graph External attack surface 1,284 assets · 37 exposed services · live AI exposure shadow model server · unauthenticated Internet 0.0.0.0/0 edge-gw-02 203.0.113.7 · :443 vpn-01 203.0.113.9 · :500 app-tier 10.2.0.0/24 · :8443 ml-host-04 Ollama · :11434 db-edge 10.2.4.11 · :5432 CVE-2024-37032 RCE · Ollama path internet-reachable LENS RISK SCORE 82 Critical CVSS 9.4 EPSS 0.91 Reachability Internet Blast radius 7 assets KEV listed AI triage ready
Asset graph — exposure, AI shadow server, and risk score
posture · vulnerability intelligence CVE-2024-21762 FortiOS SSL-VPN · out-of-bounds write · pre-auth RCE SEVERITY CRITICAL · 9.8 EPSS 0.97 97th pct CISA KEV Exploited EXPLOIT Weaponized AFFECTED 6 assets · 2 exposed PROPAGATED RISK 88 / 100 · blast radius Direct 1-hop 2-hop Reaches 6 assets across 2 hops SCORE INPUTS CVSS base 9.8 EPSS likelihood 0.97 KEV multiplier ×1.5 Internet reachable yes Mapped to compliance pack KVKK ISO 27001 A.12.6.1 control
Vulnerability intel — EPSS, KEV, and propagated risk

What it does

01

Outside-in path mapping

See how an externally visible open port reaches the exact internal application or service behind it — the full outside-in path, drawn on one live security graph.

02

Complete EASM, built-in scanner

Everything an EASM platform should have, with its own external scanner included — bring your own vulnerability scanner if you prefer, and run the EASM standalone.

03

Unifies your scanners

Pull Tenable Nessus, Qualys, Recorded Future and the tools you already run into one external-and-internal picture, instead of a stack of disconnected consoles.

04

AI & shadow-AI exposure

Discover self-hosted model servers (Ollama, vLLM, LM Studio), MCP servers and AI agents — then flag the ones exposed, unauthenticated or running a vulnerable runtime.

05

Lens Risk Score (LRS)

One 0–100 score blends CVSS, EPSS, KEV and internet-reachability — propagated across the graph by blast radius, not raw CVE counts.

Why teams run Lens

  • Trace an internet-facing open port straight to the exact internal application behind it, on one graph.
  • Run a complete EASM with its own scanner, or bring your own and sell it standalone.
  • Unify Tenable Nessus, Qualys, Recorded Future and your other tools into one external-and-internal view.
  • Surface the shadow AI nobody registered — exposed model servers, MCP endpoints and over-privileged agents.
  • Prioritize by one Lens Risk Score and business blast radius, not raw CVE counts.
lens · live live

Attack surface

last 24h
1,284
Assets
37
Exposed
4
Critical
82
Risk score
Exposure by severity
Critical
High
Medium
Low

See Seraxi on your environment.

Book a technical walkthrough. We'll map Trace, Keep, and Lens to your fleet and show you a real backup, capture, and exposure picture — not a slide deck.

Book a demo