The security landscape is evolving at an unprecedented pace. What used to be a predictable cycle of patching known vulnerabilities has now become a race against adversaries who move faster than ever. Attackers are weaponizing exploits within minutes, like the JetBrains TeamCity CVE-2024-27198, which saw attempted exploitation just 22 minutes after a proof of concept was published.
In this high-stakes environment, security teams need more than traditional vulnerability scanning. They need speed, precision, and scale, without the noise.
At ProjectDiscovery, we’ve always believed in seeing security through the attacker’s lens. That philosophy shaped Nuclei, which has become a go-to tool for researchers and security teams worldwide. Now, we’re taking that same battle-tested engine and pushing it even further.
ProjectDiscovery Cloud is designed for organizations that need to scale their defenses with the best modern vulnerability scanner. It runs Nuclei at blazing speeds in the cloud while adding powerful capabilities like custom scanning schedules, real-time alerts, and streamlined triage workflows.
Today, we’re unveiling the next evolution of vulnerability scanning in ProjectDiscovery Cloud, bringing together cutting-edge detection, automation, and intelligence to help teams stay ahead of attackers.
In this post, we’ll break down each of these improvements in detail. But if you're short on time, here’s the TL;DR on what’s new for vulnerability scanning in ProjectDiscovery v1.
TL;DR
Traditional vulnerability scanning is slow, noisy, and can’t keep up with modern threats. Attackers move in minutes, your scanner should too.
For organizations managing tens of thousands of assets, speed is critical. But hosting your own Nuclei instances means dealing with cloud configs, network policies, and constant maintenance. ProjectDiscovery Cloud eliminates that overhead with a 35x faster scanning engine built for scale.
Get actionable results within the same day, not weeks, without the hassle of managing infrastructure. Just fast, high-fidelity vulnerability detection at cloud scale.
Staying ahead of attackers means scanning daily, or even more frequently. But setting up automation yourself can be a time sink.
There’s no need for custom scripts or cron jobs with ProjectDiscovery Cloud. Choose a schedule and we’ll handle the rest.
With always-on monitoring, you can rest easy knowing your assets are continuously checked for vulnerabilities without the manual overhead.
Security teams are overloaded with tools. Logging into yet another portal every day isn’t practical That’s why we built smart alerts, so you’re only notified when it matters.
With ProjectDiscovery Cloud, you get the information you need where you need them, like in your inbox or your messaging platform.
When a vulnerability is detected, speed matters. You need the right data, immediately, to assess impact and take action.
With ProjectDiscovery Cloud, every finding includes:
We bring everything you need in one place. No digging, no guesswork. Just actionable data.
In a fast-moving environment, vulnerabilities can disappear as quickly as they appear. You need to know, right now, whether an issue still exists.
With ProjectDiscovery Cloud, you can immediately retest a finding with one click.
When time matters, immediate retest gives you the answers you need, when you need them.
Knowing what was scanned is just as important as knowing what was found. Security teams need clear visibility into which templates ran, which assets were scanned, and what the results were, without sifting through endless data.
With ProjectDiscovery Cloud, teams can:
Scan logs provide the auditability and historical record teams need to track security activity, troubleshoot unexpected results, and optimize scanning strategies. With full transparency into scan activity, security teams can easily investigate, validate, and continuously improve their security posture.
Staying ahead of attackers means reacting fast, before vulnerabilities are widely exploited. With ProjectDiscovery Cloud, new and trending exploits are automatically scanned against your assets as soon as they’re added to our repository. There is no need to wait for scheduled scans.
This Enterprise-only feature ensures security teams aren’t just reacting, they’re ahead of the curve, responding to emerging threats in real time.
Perimeter security is just the first line of defense. Once attackers gain a foothold, internal vulnerabilities become their fastest path to escalation. Whether through configuration drift, phishing, or compromised credentials, adversaries exploit weaknesses inside the network to move laterally and expand control.
That’s why internal network scanning is just as critical as external assessments. ProjectDiscovery Cloud offers two powerful approaches to detect and mitigate internal threats while maintaining a strong focus on exploitability and accurate detection:
Local Scanning with Nuclei – Run scans within your environment and upload results to the cloud. This approach gives organizations complete control over execution, ideal for teams with existing workflows or strict network policies.
TunnelX: Secure, cloud-controlled scanning via isolated SOCKS5 proxies, enabling secure internal scanning directly from the ProjectDiscovery interface
And coming soon, we’re integrating naabu for network and port discovery on internal networks through TunnelX, making internal security even more comprehensive.
By bringing fast, flexible internal scanning to ProjectDiscovery Cloud, we’re helping teams eliminate blind spots and fully replace their traditional scanners with a more actionable, modern solution.
Note: Internal scanning is available for Enterprise plans only.
In today’s fast-paced threat landscape, staying ahead of attackers requires tools that are not just powerful but also seamless, scalable, and built with the needs of security teams in mind. With these new capabilities in ProjectDiscovery Cloud, we’re delivering faster scans, smarter workflows, and deeper visibility, empowering teams to detect and respond to vulnerabilities with unparalleled efficiency. Whether you’re defending massive external infrastructures, managing internal networks, or responding to the latest exploits, we’ve got you covered. Welcome to the future of vulnerability detection.