AWS Continuum now supports credential testing and accessible domain suggestions
AWS Continuum proactively secures applications throughout the development lifecycle. Developers and security teams can now test login credentials and receive suggested domains before a penetration test runs
AWS Continuum for penetration testing actively protects applications throughout the development lifecycle, offering on-demand customized penetration tests and real attack possibility tests. Developers and security teams can now test login credentials before running penetration tests and receive suggested domains, enabling accurate network scope setup from the start and reducing misconfigurations and test cycle waste. Previously, identifying all URLs reachable by an application required manual effort, and authentication errors were only discovered after test cycles completed. With this release, adding login credentials during test configuration allows AWS Continuum to authenticate to the application like a real user, capturing all accessible domains encountered during login and displaying them as suggested URLs within the scope. Accessible domains are returned regardless of whether the credential test succeeds, fails, or times out. This feature is detailed in updated documentation and is available in all regions where AWS Continuum for penetration testing is offered.
Why it matters
AWS Continuum is a penetration testing service that protects applications throughout the development lifecycle. This update makes it easier for developers and security teams to validate credentials and ensure proper endpoint coverage before test execution