Attack surface & identity
Analyze a resource’s blast radius
Run blast-radius analysis from a Secorvia graph node, review reachable assets, and recompute when the graph changes.
Reviewed
Before you start
A security graph must exist and include the resource you want to investigate.
Start from a resource in Attack Path
Open the Attack Path graph and select the resource you want to treat as the source. Use the detail panel on the right; the Blast Radius list itself is where existing analyses are reviewed.
Run the analysis
Choose Run blast radius from this node. The question is what else could be reached if this resource were compromised. It evaluates relationships in the graph, not a live exploitation attempt.
Review impact and reachable assets
Open Blast Radius. Use severity filters, compare Highest impact and Critical assets reached, and inspect the source and any derived containment actions. If no actions were derived, do not assume every relevant mitigation has been assessed.
Recompute when the snapshot changes
An analysis can be marked out of date after the graph changes. Recompute it against the current graph, especially after containment or permission changes, and compare the newly reachable assets.
Where you are now
You have a source-specific impact analysis whose graph version and freshness are understood.
WHEN SOMETHING LOOKS OFF
A few things to check
No blast-radius analyses yet
Start one from a selected resource in the Attack Path graph.
None reached
Confirm graph coverage and source selection before interpreting this as isolation.
PUT IT INTO PRACTICE
Make your next move in Secorvia.
Open the app and follow along with your own organization.