Evidence Platform

Evidence Platform

Root Evidence
+
+
Visit Website

About

Criminal IP ASM delivers a threat intelligence-powered approach to attack surface management by combining continuous asset discovery with deep threat analysis across IPs, domains, OSINT, and associated infrastructure. Built on Criminal IP’s advanced scanning and enrichment capabilities, it brings Threat Intelligence context such as vulnerability intelligence, C2 detections, malicious IP/domain correlations, and dark web exposure into every layer of asset discovery in an integrated approach that empowers security teams to proactively identify, prioritize, and mitigate threats before they are exploited.

About

Evidence Platform is an evidence-based vulnerability management platform that helps organizations discover their external attack surface, identify the vulnerabilities tied to real financial loss, prove the value of remediation, and back the results with financial protection. Evidence Platform uses the Evidence Graph, a live model of the internet, to map an organization’s public-facing assets before configuration, including infrastructure missed by seed-based discovery tools. It shows why each asset belongs to the organization, tracks new assets from certificate logs and passive DNS, and supports search by technology, ports, certificates, geography, and risk. Evidence Scan checks every asset every 24 hours against the FIRE list, KEVs, and custom CVE lists through external, non-intrusive scanning. FIREs are externally reachable CVEs connected to documented losses in insurance claims, forensic records, reinsurer data, or public disclosures.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

Security operations, threat-intelligence and risk teams wanting a tool to get access to auto-monitored assets exposed to attack surfaces

Audience

Cyber-insurance underwriting teams that need to verify external assets, identify loss-driving vulnerabilities, and continuously monitor insured portfolios

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

Send us an inquiry about purchasing the Criminal IP Enterprise license.
Our sales team will get in touch with you as soon as possible.
Free Version
Free Trial

Pricing

No information available.
Free Version
Free Trial

Reviews/Ratings

Overall 5.0 / 5
ease 4.5 / 5
features 4.8 / 5
design 5.0 / 5
support 5.0 / 5

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Pros from Real Users

Pros

  • What I appreciated the most was the comprehensive nature of the platform. Criminal IP ASM offers an extensive perspective on the external attack surface, revealing assets that you might not even be aware of. The inclusion of threat intelligence, OSINT enrichment, screenshots, and metadata transforms the findings into tangible and actionable insights rather than mere theories. It’s evident that the platform has been designed with the mindset of a security professional in mind.
  • Criminal IP ASM is refreshingly straightforward. You log in, you see what’s exposed, and you immediately understand where the risks are. As someone responsible for security decisions but not too knowledgable about it, I appreciate how fast it gets to the point. Asset discovery works well, the data feels reliable, and it helps validate assumptions we already had while also catching things we missed.
  • As a CTO, what I value most is clarity and signal over noise, and Criminal IP ASM does a good job there. It gives a clear picture of our external attack surface without overwhelming the team. Asset discovery is solid, risks are easy to understand, and the platform feels practical rather than academic. It’s something you can check regularly and act on, not just generate reports that no one reads.
  • - Can automatically discover and inventory all internet-facing assets associated with an organization — including IPs, domains, cloud services, open ports, certificates, and other externally exposed infrastructure. This includes shadow IT and unknown assets that are often missed in asset inventories. - Unlike periodic scanning approaches, Criminal IP ASM provides continuous monitoring of external assets against evolving threat data. Detected exposures and vulnerabilities are automatically scored (e.g., High/Medium/Low), helping security teams quickly identify and focus on critical risks. - The findings add context to vulnerabilities, that possibly help teams understand not just what’s exposed but how vulnerable it is to specific attacks, enabling better decision-making. - As a SaaS solution, it's quick to deploy, requiring minimal setup. This is especially valuable for large enterprises where fast onboarding and scalability are crucial.

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

AI Spera
Founded: 2017
United States
www.criminalip.io/products/asm/attack-surface-management

Company Information

Root Evidence
Founded: 2025
United States
www.rootevidence.com

Alternatives

Criminal IP

Criminal IP

AI SPERA

Alternatives

Silent Armor

Silent Armor

Silent Breach
Tenable One

Tenable One

Tenable

Categories

Categories

Integrations

Cisco CX Cloud
Criminal IP
Google Chrome
Nmap
Polarity
PolySwarm
Splunk Cloud Platform
Sumo Logic
Tenable One Cloud Exposure (CNAPP)
VirusTotal
WordPress

Integrations

Cisco CX Cloud
Criminal IP
Google Chrome
Nmap
Polarity
PolySwarm
Splunk Cloud Platform
Sumo Logic
Tenable One Cloud Exposure (CNAPP)
VirusTotal
WordPress
Claim Evidence Platform and update features and information
Claim Evidence Platform and update features and information