What are the different scan types?
External
The external scan engine, hosted by Holm Security, can be used to scan your public environment. The result will give you a good understanding of the vulnerabilities you expose to the internet.
Internal Scanner Appliance
The Scanner Appliance is a virtual machine that you deploy in your local network. Accordingly, it runs scans within this local network and can be used for both web application scans and network scans. Depending on the size and configuration of your local environment, you may want to use several scanner appliances. All results are presented in Security Center.
Scanner Appliance for cloud environments
The Scanner Appliance is hosted in your Azure/AWS/Google Cloud/Oracle environment with a similar purpose to the internal Scanner Appliance.
System & Network Security
Detect and scan open ports for vulnerabilities with our System & Network Security product. It can also be configured to authenticate during scans for even better vulnerability coverage.
Web Application Security
As part of our Web Application Security product, our scan engine will crawl your website to identify vulnerabilities for each exposed URL. It can be configured with headers and authentication methods to bypass login forms and scan webpages protected by authorization.
Cloud Security
Identify and remediate vulnerabilities across your cloud-native platforms with Cloud Security Posture Management (CSPM). Scans within our Cloud Security product help you control cloud infrastructure risk by automating the detection of misconfigurations across cloud resources.
API Security
Using our API Security product, REST API scanning in a web app scan enables the scanner to inject vulnerability-detection patterns into JSON REST APIs. By supplying an Open API specification document, the scanner can detect various vulnerability types within REST APIs, including SQL injections, XXE, and deserialization issues.