Know every asset.Find every weakness.Act instantly.

HaxUnit continuously maps your external attack surface, performs vulnerability assessment, and converts risk signals into action.

How it works

From discovery to actionable risk

We continuously discover assets, enumerate exposed services, and surface actionable vulnerabilities so your team can remediate faster.

  • blog.haxunit.com

    Discovered 1m ago
  • admin.haxunit.com

    Discovered 2 days ago
  • analytics.haxunit.com

    Discovered 5m ago
  • app.haxunit.com

    Discovered 1m ago
  • api.haxunit.com

    Discovered 12m ago
  • staging.haxunit.com

    Discovered 3h ago
  • auth.haxunit.com

    Discovered 4 days ago
  • docs.haxunit.com

    Discovered 22m ago
  • cdn.haxunit.com

    Discovered 8m ago
  • support.haxunit.com

    Discovered 6h ago
  • mail.haxunit.com

    Discovered 1 day ago
  • status.haxunit.com

    Discovered 30m ago
  • dev.haxunit.com

    Discovered 18m ago
  • cdn-eu.haxunit.com

    Discovered 2h ago
  • blog.haxunit.com

    Discovered 1m ago
  • admin.haxunit.com

    Discovered 2 days ago
  • analytics.haxunit.com

    Discovered 5m ago
  • app.haxunit.com

    Discovered 1m ago
  • api.haxunit.com

    Discovered 12m ago
  • staging.haxunit.com

    Discovered 3h ago
  • auth.haxunit.com

    Discovered 4 days ago
  • docs.haxunit.com

    Discovered 22m ago
  • cdn.haxunit.com

    Discovered 8m ago
  • support.haxunit.com

    Discovered 6h ago
  • mail.haxunit.com

    Discovered 1 day ago
  • status.haxunit.com

    Discovered 30m ago
  • dev.haxunit.com

    Discovered 18m ago
  • cdn-eu.haxunit.com

    Discovered 2h ago

Asset discovery

Comprehensive scanning of domains, subdomains, and IP ranges to map your complete attack surface.

Open ports

  • 443https / nginx 1.24
    open
  • 80http redirect
    open
  • 22ssh / openssh 9.7
    open
  • 443https / nginx 1.24
    open
  • 80http redirect
    open
  • 22ssh / openssh 9.7
    open

Exposed endpoints

  • /api/v1/users
  • /admin
  • /healthz
  • /auth/login
  • /api/v1/users
  • /admin
  • /healthz
  • /auth/login

Service Enumeration

Detailed analysis of running services, open ports, and exposed endpoints.

Vulnerability scanning in progress..

  • Redis < 8.2.1 lua script

    CVE-2025-46817

    Critical
    Found atredis.haxunit.com
    Last seen5m ago
  • Redis Lua Parser < 8.2.2

    CVE-2025-46631

    High
    Found atredis.haxunit.com
    Last seen4m ago
  • Redis Server - Unauthenticated

    Password not required

    High
    Found atredis.haxunit.com
    Last seen2m ago
  • Public metrics endpoint exposed

    /metrics publicly reachable

    Low
    Found atredis.haxunit.com
    Last seen1m ago
  • Redis < 8.2.1 lua script

    CVE-2025-46817

    Critical
    Found atredis.haxunit.com
    Last seen5m ago
  • Redis Lua Parser < 8.2.2

    CVE-2025-46631

    High
    Found atredis.haxunit.com
    Last seen4m ago

Vulnerability Assessment

Advanced scanning for security vulnerabilities, misconfigurations, and potential threats.

Features

Our Simple, Smart, and Scalable Process

We design, build, and deploy solutions that help you operate more efficiently.

Asset Discovery

We scan your entire digital footprint to discover all assets and entry points across your attack surface.

  • Enumeration
  • Port analysis
  • Assessment
  • API discovery
  • Asset tracking

Vulnerability Scanning

Deploy automated multi-phase scanning to identify vulnerabilities before attackers exploit them.

scan-engine.tsstreaming
01const target = "app.haxunit.com";02const scope = await loadAttackSurface(target);0304for (const asset of scope.assets) {05  const fingerprint = await identifyServices(asset);06  const templates = await selectTemplates(fingerprint);0708  for (const route of fingerprint.routes) {09    const result = await scanRoute(route, templates);10    if (result.severity !== "none") findings.push(result);11  }12}1314const prioritized = rankFindings(findings, {15  exploitability: true,16  businessImpact: true,17});1819publishReport(prioritized, evidenceStore);20await scheduleRescan(target, "24h");01const target = "app.haxunit.com";02const scope = await loadAttackSurface(target);0304for (const asset of scope.assets) {05  const fingerprint = await identifyServices(asset);06  const templates = await selectTemplates(fingerprint);0708  for (const route of fingerprint.routes) {09    const result = await scanRoute(route, templates);10    if (result.severity !== "none") findings.push(result);11  }12}1314const prioritized = rankFindings(findings, {15  exploitability: true,16  businessImpact: true,17});1819publishReport(prioritized, evidenceStore);20await scheduleRescan(target, "24h");

Seamless Integration

Connect HaxUnit to your security tools for centralized visibility and streamlined incident response.

HaxUnitLive SyncYour stack
Critical findingsJira IssuesSynced
Asset changesSlack AlertsPending
Risk deltasSIEM StreamPending
Evidence bundlesWebhook QueuePending

Continuous Monitoring

Monitor daily for new threats, track remediation progress, and strengthen your security continuously.

CVE Detection

New vulnerabilities identified within hours

Asset Monitoring

247 new endpoints discovered

Security Score

Improved by 15% this month

Pricing

Simple Plans. No Surprises.

Select the option that fits your needs and start today.

14-Day Pro Trial

$0/14 days

Full Pro access with card up front. Automatically converts to paid Pro unless canceled.

  • Full Pro feature access
  • Up to 200 Assets
  • 1 Asset Group, 5 Domains per Group
  • Advanced Vulnerability Scanning
  • Cancel anytime before renewal
Start 14-day trial

Enterprise

Custom

Perfect for large organizations with advanced needs.

  • Everything in Pro and more
  • Dedicated support
  • Custom integrations
  • On-premise deployment
  • API access
Contact us

FAQs

We’ve Got the Answers

Quick answers to your questions.

See HaxUnit in action

Start monitoring your attack surface with HaxUnit.

Sign Up