ASMAsset discovery
Your attack surface, as the internet sees it.
Attackers don't start with your asset register; they start with your domain. Nulink does the same. From a seed domain it discovers related subdomains, IP addresses, hosts and services, and builds an external inventory you can compare with what you think you run.

What it finds
- Subdomains and hosts linked to your domains
- IP addresses and the providers hosting them
- Web applications, APIs and login pages
- Assets missing from your internal inventory
How it works
- 01
Add a seed
Enter the domains you own. That's the only input required.
- 02
Discover
Public sources such as DNS records and certificate transparency logs are used to expand the seed.
- 03
Confirm
Review what was found and mark what belongs to you.
- 04
Monitor
The inventory is refreshed continuously as your surface changes.
What changes for your team
An honest inventory
See what's actually exposed, not what the spreadsheet says.
The attacker's starting point
Fix what's visible from outside before anyone else finds it.
Minutes to start
No agents and no access to grant. Just a domain.
Especially useful for MSPs.

Subdomains and lookalikes
DNSCatch forgotten subdomains, dangling DNS records and domains registered to impersonate you.
Read more
Shadow IT discovery
Shadow ITSurface the servers, sites and services someone launched without telling security.
Read more
Certificate monitoring
CT logsWatch certificate transparency logs for every certificate issued for your domains.
Read more

Visibility is security. Start with yours.
Book a 30-minute walkthrough with the team, or connect your first account and see results today.