Skip to content
arrow_back
search
E8-PO-ML1.3 bolt ASD Essential Eight

Use a daily vulnerability scanner for internet-facing systems

Use a tool every day to find and fix missing updates on servers and network devices facing the internet.

record_voice_over

Plain language

This control means using a tool every day to check your internet-facing systems, like websites and email servers, for any updates that are missing. This matters because if you don't keep these systems updated, hackers can find weaknesses and exploit them, putting your organisation at risk.

Framework

ASD Essential Eight

Control effect

Detective

E8 mitigation strategy

PO

Classifications

N/A

Official last update

N/A

Control Stack last updated

19 Mar 2026

E8 maturity levels

ML1

Official control statement

A vulnerability scanner is used at least daily to identify missing patches or updates for vulnerabilities in operating systems of internet-facing servers and internet-facing network devices.
bolt ASD Essential Eight E8-PO-ML1.3
priority_high

Why it matters

Ignoring daily scans on internet-facing systems can leave exploitable vulnerabilities unpatched, giving attackers an easy entry point soon after new flaws or updates are disclosed.

settings

Operational notes

Schedule daily scans for all internet-facing servers and network devices, validate scan completion, and triage findings quickly to prioritise patching of critical OS vulnerabilities.

Mapping detail

Mapping

Direction

Controls