A.R.P. Syndicate ARPSyndicate
Login

Kenzer Platform

Vulnerability Management & Risk Scoring Platform

Kenzer scores security posture from continuous, passive reconnaissance — not a self-reported questionnaire — built on ARPSyndicate's own subdomain and exploit intelligence databases, among the largest in the industry.

Get started See it in action

Built on the world's largest subdomain & exploit intelligence databases

Kenzer's core is ARPSyndicate's own — Subdomain Center and Exploit Observer, the same shadow-IT discovery and exploit-maturity data (EPSS, VEDAS, CISA KEV) sold on their own as standalone APIs.

That core is complemented by specialized third-party intelligence — see Ecosystem below — rather than one team trying to build every signal in-house.

Deeper active verification runs only with an organization's explicit authorization.

500M+
brands tracked
195
governments scored
13
grade tiers, O to F
One engine, six use cases

Built for how risk actually gets managed

The same reconnaissance pipeline and O-to-F risk grading, applied wherever “how risky is this externally-facing thing” is the question.

VM

Vulnerability Management

The core scanning engine underneath every other use case here — network scanning, SBOM analysis, exploit-aware prioritization.

Output integrations into the tools your team already runs.

Read more →
TP

Third-Party Risk Management

Score vendors and suppliers from the outside in, continuously — not a point-in-time questionnaire.

Fourth-party breach cascade flags every vendor exposed the moment a shared provider is hit.

Read more →
EA

External Attack Surface Management

Discover what you didn't know you had — subdomains, hosts, exposed services, web apps.

The same shadow-IT discovery engine behind ARPSyndicate's own Subdomain Center.

Read more →
CT

Continuous Threat Exposure Management

Scheduled rescans and a triage queue prioritized by real exploit intelligence — EPSS, VEDAS, CISA KEV.

Not just CVSS — what's actually being exploited surfaces first.

Read more →
$

Cyber Insurance & Underwriting

An objective, externally-measured risk grade applied consistently across a whole book of policyholders.

For underwriting, renewal, and portfolio monitoring.

Read more →
GV

Government & National Cyber Defense

Whole-of-government attack surface visibility for CERTs and defense/cyber intelligence agencies.

Every ministry and agency rolled up into one sovereign posture score.

Read more →
Real data, live right now

See the actual scale

Not a mockup screenshot — these are the live figures from Kenzer's own running instance.

kenzer-interface — Organizations
637
organizations tracked
58
non-compliant (D+ or worse)
29.5
average portfolio risk score
118
organizations worsening
OrganizationGradeRiskOpen findingsAssets
IndiaF98.31212,597
South KoreaD+68.05513,092
TurkeyC-53.1573,017
NorwayA+2.01393
NetherlandsA+2.01154
Under the hood

Real reconnaissance, not aggregated third-party data

Discovery and scoring run continuously from passive, non-intrusive sources by default.
Deeper active verification is available too — but only against infrastructure an organization has explicitly authorized us to touch.

Passive reconnaissance — always on
WHOIS & DNS recordsCertificate transparency & subdomain mapping Dark web exposureSecret & credential leak scraping Brand impersonation & typosquat detectionPublic cloud storage exposure GitHub code-search leak sweepMobile app inventorySBOM / software supply chain
Active verification — authorization required
Port scanningService & web fingerprinting Vulnerability scanning (CVE + general)Subdomain takeover confirmation WAF detection

13-tier school-style grading

O, A+ through D-, F — fine-grained enough that two “pretty good” targets don't collapse into the same letter.

A diminishing-returns risk curve means one bad finding doesn't instantly cap the whole score.

Organization hierarchies & rollups

Score a holding company, a conglomerate, or a national government as the average of its own sub-organizations.

Real-time, recursive, all the way up the chain.

Peer & portfolio benchmarking

See where an organization sits against its own tier and industry peers.

Track portfolio-wide trends — improving vs. worsening, at-risk counts, stale critical findings.

Fourth-party breach cascade

Log an incident at a shared provider (Cloudflare, AWS, Okta, ...) once.

Every organization with a detected dependency on that provider gets flagged automatically.

Scoped, delegated remediation

Hand a vendor's own team, or a business unit, a login restricted to exactly their own organizations.

They can triage and fix, and never see anyone else's.

Board-ready reporting

Print or save a one-click PDF for a single organization, or a whole portfolio at once.

CSV export for findings and assets, for whatever you already do with the data downstream.

Ecosystem

Backed by specialized threat intelligence

Kenzer draws on focused, industry-recognized intelligence sources rather than building every capability in isolation.

Integration

Now powering GoTrust

GoTrust, a privacy-first platform, integrated Kenzer's engine directly into their own product to meet the rising demand for offensive security.

GoTrust

GoTrust

Privacy-first platform, offensive security powered by Kenzer.

For CERTs & defense agencies

Sovereign threat intelligence, at national scale

Kenzer already tracks 195 governments' external posture, live, in the National Threat Intelligence Database — built entirely from passive, non-intrusive reconnaissance.

No active scanning of any government is ever performed without that government's own authorization.

That's the same engine a national CERT or a defense & cyber intelligence agency can run privately — every ministry, every agency, every piece of critical infrastructure, rolled into one whole-of-government view.

Our approach

A grade that means “we looked,” not “they said so”

Data source
Continuous, passive reconnaissance against publicly observable infrastructure, backed by ARPSyndicate's own subdomain and exploit intelligence databases.
Not solely aggregated breach data or self-reported questionnaires.
Authorization
Passive reconnaissance runs by default and touches nothing.
Active, intrusive verification — port scanning, live vulnerability scanning — is available, but only with the owning organization's explicit authorization.
Grading
13-tier (O through F) with a diminishing-returns curve.
A single critical finding doesn't saturate the score the way a hard-capped additive model does.
Scope
One platform for vendor risk, attack surface, continuous exposure management, underwriting, and national-scale government oversight.
Not separate tools that don't share a scoring methodology.
Transparency
A vendor handed a scorecard link can see exactly what's driving their own grade and fix it.
Not just receive a number with no way to act on it.

Start scoring what you actually depend on

Vendors, your own attack surface, a whole portfolio, or a nation's worth of infrastructure — one login away.

For questions, contact us at [email protected]
© 2026 A.R.P. Syndicate. All rights reserved.