Start fixing your assets by mailing reports
08 December 2019
This update had a lot in it, but the most useful I think is the option to mail reports. You can now directly email all data you see to an email address of your choice. This works for websites, certificates, hosts and domains. You’ll find the option
mail report at the top of the menu under the triple dots (right top).
Using your own product is a good way to find out what is working and what not. I found myself typing quite a few emails to the persons who needed to fix things. Insecure certificate? Write an email. Insecure port open? Write an email. Insecure headers on a website? Write an email. Of course including screenshots helped, but this forces the receiver to re-retype everything that should have been a convenient copy-paste. That’s fixed now. So, go ahead and start chasing your security problems by mailing reports.
The graph on the url page has also improved. Links between your assets are shown more clearly. Related assets that are not yours are shown in grey, and you can easily add them by clicking. There’s more little improvements, check out the graphs for your more complex assets and you’ll see.
Next stop is improving the weekly pdf report.
iPhone and Android app updates
29 November 2019
After the new user interface for the desktop the apps had to follow off course.
The changes are similar as the update to the desktop, but the biggest change is the menu icons at the bottom. I noticed that my thumb had to move to the upper part of the screen to access the menu and with current smartphone sizes this is quit annoying.
Have a look at the screenshots in the App Store and Play Store, and try the app if you haven’t done so already. I gives you instant push messages for your security problems (and you can permanently switch them of during the night)
Next stop is fixing the most annoying messages on the timeline. If you have messages of message storms that you find particularly unuseful please send them in!
New user interface
27 October 2019
The old user interface has been around for a while. It worked fine so far, but every new feature was sort of bolted on. Early users grew along, but some new users could not find the things they expected in the places they expected them. So, time for a change.
The biggest layout change is the menu. It has moved to the left and you can hide it on demand to free up more space for content. This is especially handy for big graphs like the attack surface.
The two different pages for each asset that existed have now merged. If you can't see the options you need, check out the drop down menu in the upper right (the three dots).
Although it's mostly a redesign to improve the user experience, some new features have creeped in. You can now request a scan for an asset from the upper right menu. The request will be queued and not executed immediately for now. Maybe I'll change this so requests will jump the queue and are executed faster, which is quite useful when you just fixed your server, certificate or website.