All featuresFeature IP Vulnerability Scanner

IP Vulnerability Scanner Find your attack surface before hackers do.

Scan public and private IP addresses to identify vulnerabilities, exposed services, and security risks across your entire network infrastructure.

Full scanin minutes
CVSSseverity scoring
100%IP coverage
15 minutes to connect. No credit card. No sales call.

IP Vulnerability Scanner at a glance

What it does
Scan public and private IP addresses to identify vulnerabilities, exposed services, and security risks across your entire network infrastructure.
In one line
Scan public & private IPs for open ports, CVEs, and SSL/TLS issues.
Human control
You choose what gets scanned, and when.
Setup
About 15 minutes, read-only access, no credit card.
Pricing
Free first scan; Pro from $99/month; Enterprise from $10,000/year. See pricing.
The problem

Nobody remembers standing that server up.

An admin panel on port 8080 from a migration two years ago. A database that was only ever meant to be reachable from the office. A certificate that expired last Tuesday. None of it is on a diagram, and all of it answers when the internet knocks.

How it works

Four steps to done.

  1. 01IP Discovery

    Automatically enumerate all public and private IP addresses associated with your AWS infrastructure.

  2. 02Port Scanning

    Deep scan of all open ports with service identification and version detection for accurate risk assessment.

  3. 03Vulnerability Assessment

    Check for SSL/TLS weaknesses, expired certificates, insecure protocols, and known CVEs against each service.

  4. 04Threat Report

    Get a prioritized, actionable report with CVSS scores and specific remediation steps for every finding.

Capabilities

Everything included.

Public and private IP address scanning

Open port detection with service fingerprinting

SSL/TLS vulnerability and certificate expiry checks

Real-time threat analysis with CVSS scoring

Identifies exposed admin panels and dangerous services

Historical scan comparison to track remediation progress

Machine speed, human judgement

You choose what gets scanned, and when.

Add the addresses and ranges you own, set the window, and the scan runs inside it. Nothing is probed until you have confirmed it is yours - and a running scan stops from the same screen you started it on.

  • You have to own, or be authorised to test, every address you add. We ask, and we check.
  • It reports open ports, known CVEs and weak TLS. It does not exploit what it finds.
  • Hosts behind a firewall need the private scanner, which runs as one binary inside your network.
Straight answers

Common questions about IP Vulnerability Scanner.

Scan public and private IP addresses to identify vulnerabilities, exposed services, and security risks across your entire network infrastructure. Scan public & private IPs for open ports, CVEs, and SSL/TLS issues.

1. IP Discovery: Automatically enumerate all public and private IP addresses associated with your AWS infrastructure. 2. Port Scanning: Deep scan of all open ports with service identification and version detection for accurate risk assessment. 3. Vulnerability Assessment: Check for SSL/TLS weaknesses, expired certificates, insecure protocols, and known CVEs against each service. 4. Threat Report: Get a prioritized, actionable report with CVSS scores and specific remediation steps for every finding.

You have to own, or be authorised to test, every address you add. We ask, and we check. It reports open ports, known CVEs and weak TLS. It does not exploit what it finds. Hosts behind a firewall need the private scanner, which runs as one binary inside your network.

Connecting takes about 15 minutes with read-only access. No credit card and no sales call are needed to run the first scan.

It is included in DeDups: one full scan of one AWS account is free with no card, Pro is $99 a month plus published per-unit rates, and Enterprise starts at $10,000 a year. All rates are on the pricing page.

Ready to try IP Vulnerability Scanner?

15 minutes to connect. No credit card. No sales call required.