about thingsrecon

For every ‘thing’ that connects you.

ThingsRecon is a cybersecurity company helping organizations discover and understand the external assets, suppliers, applications, APIs, and digital dependencies connected to their business. Our platform gives security, risk, compliance, vendor management, and executive teams a continuously updated view of their extended digital ecosystem.

ThingsRecon develops cybersecurity technology for discovering internet-facing assets and mapping the digital relationships between organisations, suppliers and the wider infrastructure they depend on.

ThingsRecon Logo - Lavender
ThingsRecon team group photo
founders story

Born out of curiosity. Built to see more things.

ThingsRecon was founded after Co-Founder Stephane Konarkowski discovered a recurring problem while building solutions for enterprise clients: most organizations could not identify all the applications, APIs, services, infrastructure, and suppliers connected to their environment. Even a seemingly simple question,“How many assets are you protecting?” —was difficult to answer.


Together with Nicolas Renard, he built an engine that scans what’s exposed on the internet, uncovering hidden applications, forgotten infrastructure, third-party connections, and many other blind spots that traditional tools miss.

That work became ThingsRecon: a discovery-first cybersecurity platform designed to help organizations understand not only what is externally visible, but how assets, suppliers, and digital dependencies connect to the systems that matter most. We built ThingsRecon to turn fragmented exposure data into actionable intelligence for reducing attack-surface and supply-chain risk.

Your digital ecosystem extends far beyond the vendors and the things you can name.

It’s the untracked APIs, the forgotten integrations, and the unseen suppliers that often carry the greatest risk. By combining continuous attack surface discovery with third-party visibility in one platform, we’ve built a living view of the extended digital ecosystem your organization depends on.”

Robin de Vries

CEO

|

ThingsRecon

Meet
the
Team

Meet the team

Stephane Konarkowski

CPO & Co-Founder

Nicolas Renard

CTO & Co-Founder

Daan Dia

Investor & Co-Founder

Aziz Maakaroun

Investor & Co-Founder

Sabrina Pagnotta

Head of Marketing

Laurie Coady

Head of Operations

Romuald Bois

Senior Technical Support Engineer

Tom Lukas

Head of Business Data Intelligence

Vivian Hermes

Sr. Channel Partner Manager

Janne Nyman

Head of Solutions Engineering

Keith Biggin

Fractional CISO, Product Strategy

Board of advisors

OUR APPROACH

Your things. Discovered.

At the heart of ThingsRecon lies a discovery engine built to find the things that touch your ecosystem. Every day, we scan millions of domains, IPs, APIs, certificates, and web applications to uncover the hidden layers of an organization’s attack surface.  

A proper recon doesn’t stop at what’s visible. From shadow assets and abandoned subdomains to inherited supplier infrastructure, we surface what traditional scanners miss.

We correlate and contextualize every finding, mapping relationships, exposures, and Digital Proximity (Patent Pending) to critical systems — enriched with data from geopolitical, financial, compliance, and threat intelligence sources. The result is a continuous view of your attack surface and third-party risk. A dynamic map of your digital connections as they grow and evolve.

More than discovery, it’s living cyber intelligence.  

500.000
+
web apps
discovered
250.000
+
Domains
monitored
20.000
+
third-parties
monitored

Support

Our team is here to help.

Partners

Expand your MSSP offering.

Contact Us

Send questions or enquiries.

Why customers choose ThingsRecon

Five reasons security leaders rely on us to turn discovery into remediation.

1. 50% more findings than other scanners

Our deep discovery engine surfaces shadow assets, hidden dependencies, and geo-fenced services most tools miss. By combining continuous asset discovery with third-party risk visibility in one platform, we’ve built a continuous view of your evolving digital ecosystem.

2. Over 100 cyber hygiene indicators

Evidence-based risk prioritization is backed by over 100 automated checks across DNS, SSL/TLS, headers, and web hygiene indicators that provide measurable proof of improvement.

3. Proprietary algorithm

Digital Proximity (Patent Pending) adds context to the data: not just “is this vendor risky?” but how directly their risk touches you. It’s a unique measurement of how close each asset or supplier sits to your critical systems.

4. Deep discovery without deployment

Agentless, external scanning means zero disruption. Visibility starts within hours, not weeks, so you can map the assets inside your perimeter, plus the suppliers, partners, and fourth parties connected to you.

5. Geo-located scanning free from regional blocking

With points of presence in North America and Europe, our platform scans from the nearest regional vantage point, surfacing risks hidden behind geo-fences, localized CDNs, or regional DNS variations.