Compare

Where Exploit Hound fits.

A capability table across five exposure management platforms, each cell taken from that vendor’s own published documentation. Exploit Hound loses several of these rows outright, and they are left in.

Oldest check in this comparison: 12 September 2026. Every cell comes from each vendor's own product documentation, page by page, and each one carries the page it came from and the date that page was read. Vendor capabilities and packaging change frequently; verify anything that would decide a purchase directly with them.

How Exploit Hound is delivered

Stated separately from the comparison below, and only about us: this is a fact about our own architecture, and we do not publish claims about how other vendors deliver theirs without a source.

CapabilityExploit Hound
Hosted management platform✓
Onsite probe / collector✓
OS endpoint clients / agents✓ Linux, Windows and macOS Beta
Customer-hosted management platform✗

Exploit Hound operates the management platform as a hosted service. The onsite probe and the OS clients run inside customer environments and report outbound to it, so there is nothing for a customer to host and nothing inbound to open. The architecture, in more detail.

Capability comparison

Both columns use one vocabulary of eight statuses, defined under the table. The Exploit Hound column is generated from the same registry the integrations page reads, so it cannot say something different here.

CapabilityExploit HoundConnectSecureTenable OneCrowdStrike FalconRapid7 Exposure CommandQualys VMDR
MSP multi-tenancyAvailableAvailableNot verifiedNot verifiedNot verifiedNot verified
Internal network assessmentAvailableNot verifiedAvailableAvailableAvailableNot verified
External attack surfaceAvailableAvailableAvailableNot verifiedNot verifiedNot verified
Endpoint agentLimited scope

Linux, Windows and macOS Beta

Not verifiedAvailableAvailableAvailableNot verified
Active Directory assessmentBeta

no live directory assessed

AvailableAvailableSeparate moduleNot verifiedNot verified
Entra ID / M365 assessmentBeta

Graph payload mapping unproven

AvailableAvailableSeparate moduleNot verifiedNot verified
Google Workspace assessmentBeta

built 18 August 2026

AvailableNot verifiedNot verifiedNot verifiedNot verified
EPSS prioritizationAvailableAvailableNot verifiedNot verifiedNot verifiedNot verified
CISA KEV weightingAvailableNot verifiedNot verifiedNot verifiedNot verifiedNot verified
Web application checksBeta

basic checks, not a DAST product

Plan dependentAvailableNot verifiedNot verifiedNot verified
Full dynamic application security testingNot availableNot verifiedAvailableNot verifiedPlan dependentNot verified
Sensitive data discoveryBeta

Runs on the OS client over paths an operator configures, and is off until they do. Reports where suspected sensitive…

Not verifiedNot verifiedNot verifiedNot verifiedNot verified
Native OS and application patchingNot availableAvailableNot verifiedNot verifiedNot verifiedSeparate module
Compliance frameworksLimited scope

six frameworks

AvailableNot verifiedNot verifiedAvailableNot verified
Exposure graphAvailableNot verifiedNot verifiedNot verifiedNot verifiedNot verified
Attack path analysisAvailableNot verifiedAvailableAvailableAvailableNot verified
Choke point ranking of remediationAvailableNot verifiedNot verifiedNot verifiedNot verifiedNot verified
NetFlow telemetryAvailable

NetFlow

Not verifiedNot verifiedNot verifiedNot verifiedNot verified
Honeypot / deceptionAvailableNot verifiedNot verifiedNot verifiedNot verifiedNot verified
PSA ticketing integrationBeta

HaloPSA, ConnectWise, Autotask, Jira, ServiceNow

AvailableNot verifiedNot verifiedNot verifiedNot verified
ITSM ticketing integrationBeta

HaloPSA, ConnectWise, Autotask, Jira, ServiceNow

Not verifiedAvailableNot verifiedNot verifiedNot verified
RMM remediation orchestrationBeta

NinjaOne, Datto, Syncro, N-able

Not verifiedNot verifiedNot verifiedNot verifiedNot verified
Remediation verified by re-checkingAvailableNot verifiedAvailableNot verifiedAvailableNot verified
Cloud posture assessmentBeta

never run against a live account

Plan dependentAvailableNot verifiedPlan dependentNot verified
Container and Kubernetes securityNot availableNot verifiedNot verifiedNot verifiedPlan dependentNot verified
OT and IoT coverageNot availableNot verifiedAvailableNot verifiedNot verifiedNot verified
Published price listAvailable

on the pricing page

Limited scopeNot verifiedNot verifiedNot verifiedNot verified

How to read this table

Our column is generated from the capability registry the whole site reads, so it says the same thing here as on the integrations page. Each vendor column links to that vendor’s own comparison, where every cell names the product, the official page it came from and the date that page was read.

Available
Documented by the vendor as part of the named product, with no separate module or tier stated on the page checked.
Pending approval
Built, and validated against a live environment, with operator approval for general availability still outstanding. Usable under the terms of a guided evaluation; not yet generally available.
Separate module
Documented, and sold or packaged as a different named product from the one this column is about.
Plan dependent
Documented as belonging to a higher tier, package or add-on of the same product.
Beta
Implemented and available for guided evaluation; production validation is not complete.
Limited scope
Present, and narrower than the row's name suggests. The note says how.
Not available
The vendor's own documentation states it is not supported, or we have established the product does not do it.
Not verified
We have not checked an official source for this row. It is not a claim that the capability is missing.

Not verified is not Not available. Most of the Qualys column is unresearched rather than missing, and it says so.

How these statuses relate to the ones on the integrations page

Exploit Hound integration statuses are generated from the same shared registry used by the integrations page. This keeps GA, Production Validation, Beta and Not Built classifications consistent throughout the website. The registry’s own words for what those classifications mean, and how each is drawn here:

Available
GA — Validated end to end in a live deployment and approved for production use.
Pending approval
Production Validation — Live validation has been completed, with final approval still pending. It is not generally available, and this table does not show it as though it were.
Beta
Beta — Implemented and tested, including against recorded provider behavior, but not yet validated against a live vendor tenant.
Limited scope
Partial — built, and narrower in scope than the name implies. The cell says how.
Not available
Not Built — not implemented and not represented as available. We can say this about our own product; we almost never say it about somebody else’s.

Compared with ConnectSecure Compared with CrowdStrike Compared with Tenable Compared with Rapid7 Compared with Qualys

Capabilities we have not compared

Exploit Hound does these. We have deliberately left them out of the table above rather than fill six columns with —, which would tell you nothing while looking like a comparison.

Fix First remediation ranking Choke point identification Hybrid identity attack paths Unauthorised device detection Configuration assessment Finding applicability checking Asset criticality from observed evidence Change detection over a chosen window Explainable versioned risk scoring Remediation workflow with SLAs Deduplicated alerting AI analyst grounded in your own data Executive reporting

See what we scan and how for what each of these rests on, or the product tour for what they look like in the console.

How to compare these properly

Ask every vendor the same questions against your own scope: how many technician hours per customer per month, what a prioritized remediation list looks like for your estate, and whether the tool can show you why it ranked something first. Ask for that against real data rather than a canned demo. We will do the same, including where the answer favours another vendor.

Oldest check in this comparison: 12 September 2026. Every cell comes from each vendor's own product documentation, page by page, and each one carries the page it came from and the date that page was read. Vendor capabilities and packaging change frequently; verify anything that would decide a purchase directly with them.

Start with what's actually exposed.

Point Exploit Hound at the assets you are authorized to assess and see the connected picture, ranked by what removes the most exposure.

v2.80.1 Exploit Hound 2.80.1 · Continuous Threat Exposure Management