news.mlab.sh
Back to the feed
threat-intel

SpiderSilk Hunts External Threats With AI-Based Scanner

High
Summary

SpiderSilk, a Dubai-based security firm, uses AI to scan the internet for exposed assets and vulnerabilities in company systems. Their flagship product, Resonance, identifies risks by analyzing data in platforms like GitHub and correlating server ownership with company information. The company differentiates itself by running its own internet scans instead of relying on third-party datasets. Following an acquisition by CPX Holding, backed by G42, SpiderSilk is expanding its reach and focusing on providing proactive security solutions to enterprises, particularly in the Middle East.

SpiderSilk, a Dubai-based security firm, uses artificial intelligence to scan the internet for exposed assets and vulnerabilities in company systems. Their flagship product, Resonance, identifies risks by analyzing data in platforms like GitHub and correlating server ownership with company information. The company differentiates itself by running its own internet scans instead of relying on third-party datasets. Following an acquisition by CPX Holding, backed by G42, a UAE-based AI development company, SpiderSilk is expanding its reach and focusing on providing proactive security solutions to enterprises, particularly in the Middle East.

SpiderSilk’s Resonance tool works by sending probes to servers and analyzing the responses. If a server doesn’t respond to a ping, it means the associated system is not exposed on the internet. If the system rejects the connection or the handshake, it cannot be accessed. However, if a server responds, it reveals that it is available to interact with on a specific port. Some servers respond by showing a login page to an internal HR system or displaying database indexes, which is unsafe as private data may be accessible via exposed databases.

Resonance’s AI capabilities analyze, filter, and qualify the data, and “once this is confirmed with the evidence, it immediately escalates that to the customer,” according to co-founder and chief security officer Mossab Hussein. The tool assesses a page’s content and code, as well as visual elements such as logos and other assets, to determine the risk level – whether it’s an internal system or commercial software being hosted.

SpiderSilk’s approach is distinct from competitors like CrowdStrike and Palo Alto, who rely on datasets from providers like Shodan and Censys. Running its own scans allows SpiderSilk to surface exposed systems and blind spots that others may miss. The company was acquired in May 2025 by CPX Holding, a cybersecurity solutions company backed by G42, an AI development company tied to the government of the United Arab Emirates.

“If you can show high-quality revenue from an unbiased and competitive market like the U.S., that showcases the product has merit,” Hussein says. SpiderSilk was established in 2019 and now has 55 employees, with approximately half its revenue coming from the U.S. The Middle East market tends to be insular, and SpiderSilk may have a competitive advantage due to its location.

Read the full article at Dark Reading