oolak / Features / Relationship map
Relationship map

Follow the path from the internet to your data.

oolak links domains, IP addresses, certificates, servers and applications on one map. You can follow a public name to the server behind it and see which vulnerabilities are waiting there, in a single view.

From a public name to the server behind it, and the problems waiting there.

See the whole chain

Domain, DNS record, server and open findings appear as one connected path.

Understand the real risk

A server behind a WAF or CDN is weighed differently from one that faces the internet directly.

One map everywhere

The same map opens on asset, application, team, site and group pages.

Relationship map

What's included

  • The map opens as a radial view with the selected asset in the middle.
  • The attack path view shows the route from the outside in, or from the inside out.
  • The relationship view lists every connection side by side.
  • The tree view is ready to print or export as CSV.
  • Relationships such as hosting, resolving to or sitting behind a WAF are recorded.
  • These relationships feed straight into the risk score.
  • Large groups are folded automatically so the map stays readable.
  • Every map is also available through the REST API.

See oolak on your own data in 14 days.

We install oolak in your environment, connect your tools and show you your real risk picture. You keep everything it finds.

Start a free 14-day trial → Try the live demo
For engineers

Technical details

What is an asset and what is just an attribute?
Anything with its own identity that findings or rules attach to is an asset: public IPs, domains, host names, certificates, virtual machines, containers, buckets and web applications. Internal IPs, MAC addresses, RAM or ports are attributes of an asset.
Who can see what on the map?
Every node passes the same visibility check as the rest of the product. An edge is shown only when the viewer is allowed to see both of its ends.