A
ApexAegis
OverviewLogs & EventsEndpoint Events
Attack Paths & SegmentsAttack ComparisonAPT SimulationAI/ML & UEBA
SD-WAN OptimizerNetwork Events
Ghosted Apps & Services
Security PoliciesAddressesServicesURL CategoriesCloud ApplicationsCloud App Tenants
ATP ProfilesSSL InspectionDNS FilterWeb FilterDevice Posture
Users & GroupsDevicesIdentity ProvidersPasskey ManagerABAC ControlOAuth 2.0 & API KeysIdP Configuration
Test My DefenceSecurity PreviewAttack Path AnalysisSSL/TLS Scanner
Compliance ReportCertification ReportITSM Automation
Audit & Config MgmtFeature LicensingClient ConfigRoute Policies
Gateway NodesSCION Partner GatewaySDN SwitchesPort Configuration802.1X Auth ServerWireless ManagementDynamic SGTGuest AccessAPI IntegrationsCA CertificatesPolicy MigrationSettings
K

Attack Path Analysis

Shows theoretical attacker reachability — every hop an attack takes and which control blocks it. Unlike Security Preview (policy verdict simulation), this maps the full kill chain topology.

4
Attack Paths
4
All Blocked
0
Paths with Gaps
2.0
Avg Defense Depth
attacker@evil.com
DNS Resolution ⚡
Gateway Ingress
SSL Inspection ⚡
URL Categorization ✕
IPS Analysis
Application Server
#1
DNS ResolutioninspectedControl: DNS Filter

evil-login-page.com resolves to 185.234.x.x

Domain matched phishing category — DNS sinkhole applied

#2
Gateway IngresspassedControl: Gateway ACL

Traffic enters via sg-gw-01

HTTPS traffic on port 443 — permitted by default outbound rule

#3
SSL InspectioninspectedControl: SSL Inline Proxy Engine

TLS 1.3 session decrypted for content inspection

Short-lived leaf cert issued, full payload visible to downstream inspectors

#4
URL CategorizationblockedControl: SWG URL Filter

URL matched phishing category with 94% confidence

Category: Phishing — action: DENY with block page displayed to user

#5
IPS AnalysispassedControl: IPS Engine

Would inspect for credential harvesting patterns

Not reached — blocked at URL filter (hop 4)

#6
Application Serverno controlControl: None (target)

internal-crm.corp.local

Target application — not reached due to block at hop 4