Solutions

Asset Discovery

Performs ARP sweeps, local process enumeration, and MAC vendor lookups to build a complete, enriched inventory of every device across your environment, with minimal overhead and continuous updates.

The problem

Unknown assets are unmanaged risks

Every asset register becomes stale the moment infrastructure changes. Devices join the network, containers spin up, and legacy hosts linger.

These unknown assets may carry vulnerabilities that never get patched because nobody knows they exist.

Asset Discovery continuously sweeps your network using multiple discovery methods so your inventory reflects reality — not what was documented six months ago.

Unregistered device connects to network

Discovered in next ARP sweep

Legacy server missed in CMDB audit

MAC vendor + SMB enumeration surfaces it

Container workload spins up on new subnet

Process enumeration captures it locally

Capabilities

Multiple methods, one complete inventory

ARP Discovery

Crafted ARP probes sweep your network to identify all active hosts across subnets, catching devices that don't respond to ICMP or DNS queries.

Local Host Inventory

Enumerates running processes, active services, local connections, routing tables, and ARP caches directly on the host for a complete low-overhead inventory.

MAC Vendor Resolution

Looks up MAC address vendor prefixes to classify device and flag unrecognized hardware.

SMB / NetBIOS Enumeration

Discovers hostnames, and metadata across the network for full environment visibility.

DHCP & AD Enrichment

Enriches discovered assets with data from DHCP logs and Active Directory / LDAP for richer host identity, ownership, and classification context.

Low-Impact Design

Reads local connections, running services, routing tables, and ARP caches with minimal CPU and memory overhead so that they are safe to run continuously on production hosts.

How it works

From sweep to enriched inventory

Asset Discovery combines active network probing with local host telemetry and external enrichment sources to produce the most complete asset picture possible automatically, on every scan run.

  1. 01

    ARP Sweep

    Sends crafted ARP probes across the target subnet to build an initial map of active hosts, including those invisible to standard ping sweeps.

  2. 02

    Host Inventory

    Enumerates processes, services, routing tables, and ARP caches on the agent host for a complete local inventory picture.

  3. 03

    Name & Vendor Resolution

    Resolves MAC address vendors and performs SMB/NetBIOS enumeration to assign device classifications and hostnames to discovered IPs.

  4. 04

    Enrichment

    Pulls additional context from DHCP lease history and Active Directory / LDAP where configured, adding owner, department, and hostname metadata.

  5. 05

    AI Insights

    Asset Discovery findings feed into Cyfro AI Insights, which flags unrecognized devices, MAC anomalies, and unexpected hosts with prioritized risk context.

Use Cases

When teams rely on Asset Discovery

Shadow IT Detection

Discover devices on your network that were never registered like rogue access points, personal devices, or forgotten servers that create hidden exposure.

Inventory Accuracy

Reconcile your CMDB or asset register against what Asset Discovery actually finds. Gaps represent unmanaged, potentially vulnerable hosts.

Subnet Segmentation Validation

Verify that network segmentation is working as intended by comparing what hosts are visible from each agent's vantage point.

Device Classification

MAC vendor resolution and SMB enumeration give you device type context which are useful for scoping vulnerability assessments and patch management.

Ready to secure.Defeat every exposure.

See CyfroSec in action with a live demo, or talk to our team about your specific needs.

Hello, I'm here to help