Attack surface & identity

Analyze a resource’s blast radius

Run blast-radius analysis from a Secorvia graph node, review reachable assets, and recompute when the graph changes.

Reviewed

Before you start

A security graph must exist and include the resource you want to investigate.

Start from a resource in Attack Path

Open the Attack Path graph and select the resource you want to treat as the source. Use the detail panel on the right; the Blast Radius list itself is where existing analyses are reviewed.

Run the analysis

Choose Run blast radius from this node. The question is what else could be reached if this resource were compromised. It evaluates relationships in the graph, not a live exploitation attempt.

Review impact and reachable assets

Open Blast Radius. Use severity filters, compare Highest impact and Critical assets reached, and inspect the source and any derived containment actions. If no actions were derived, do not assume every relevant mitigation has been assessed.

Recompute when the snapshot changes

An analysis can be marked out of date after the graph changes. Recompute it against the current graph, especially after containment or permission changes, and compare the newly reachable assets.

Where you are now

You have a source-specific impact analysis whose graph version and freshness are understood.

WHEN SOMETHING LOOKS OFF

A few things to check

No blast-radius analyses yet

Start one from a selected resource in the Attack Path graph.

None reached

Confirm graph coverage and source selection before interpreting this as isolation.

PUT IT INTO PRACTICE

Make your next move in Secorvia.

Open the app and follow along with your own organization.

Open Secorvia