Asset coverage
Assets we investigate.
Find your systems, storage, and recovery copies. See the assets covered in each environment and the analysis available.
Pursuit investigates system compromises. Hunt inspects data for ransomware, malware, and corruption. GCP support is planned for late October 2026.
25 asset groups
| Assets | Inspection |
|---|---|
Amazon EC2 and AMIs
| Pursuit investigates EC2 system snapshots and AMIs. Hunt inspects workload data, including ECS and EKS data; this is not container runtime monitoring. |
Amazon EBS
| Pursuit investigates supported system snapshots. Hunt inspects data in EBS volumes and snapshots. |
Amazon S3
| Inspect S3 object content for ransomware and malware. |
Amazon EFS and FSx
| Inspect files in EFS, FSx for NetApp ONTAP, and FSx for Windows File Server. |
AWS Elastic Disaster Recovery
| Inspect accessible AWS DRS replicas and SnapMirror targets and review their analysis history. |
AWS Backup
| Inspect recovery copies from AWS Backup, including logically air-gapped vault and restore-test workflows. |
Azure Virtual Machines (VMs)
| Pursuit investigates Azure VM system snapshots. Hunt inspects VM data and recovery copies. |
Azure Managed Disks
| Pursuit investigates supported system snapshots. Hunt inspects Azure Managed Disks and snapshot contents. |
Azure Blob Storage
| Inspect blob contents for ransomware and malware. Hot, Cool, and Archive access follows the applicable retrieval requirements. |
Azure Files
| Inspect Azure Files shares and accessible share snapshot contents. |
Azure Site Recovery
| Inspect accessible replicated data from Azure Site Recovery and geo-redundant storage. |
Azure Backup
| Inspect Azure Backup recovery copies and compare analysis results over time. |
VMware Snapshots
| Pursuit investigates supported Windows VMware snapshots for evidence of compromise. Hunt analyzes snapshot contents for ransomware, malware, and corruption. See Pursuit for operating-system scope. |
Veeam Backup & Replication
| Inspect VM recovery points through your Veeam connection and compare Hunt results before restoring. Source workload and backup format support follow the connection requirements. |
Commvault
| Inspect VM recovery points provided by Commvault and keep findings linked to the copy analyzed. Source workload and backup format support follow the connection requirements. |
Cohesity DataProtect
| Inspect DataProtect-managed recovery points for VMware and record ransomware and malware findings. Source workload and backup format support follow the connection requirements. |
Rubrik
| Inspect Rubrik-managed VM recovery points and review analysis history before choosing a restore candidate. Source workload and backup format support follow the connection requirements. |
NetBackup
| Inspect VM recovery points exposed by NetBackup for ransomware, malware, and corruption. Source workload and backup format support follow the connection requirements. |
IBM Cloud Object Storage
| Inspect IBM COS object content for ransomware and malware. |
IBM COS object versions
| Assess prior IBM COS object versions when retained and accessible. A current object alone does not provide version history. |
Compute Engine VMs
| Compute Engine virtual machines are included in the planned Google Cloud release. |
Google Cloud disks
| Disk data is included in the planned launch scope. Specific disk families will be addressed during deployment planning. |
Google Cloud snapshots
| Point-in-time disk snapshots are included in the planned Google Cloud release. |
Google Cloud backups
| Backup data is included in the planned launch scope. Review backup connections as part of your evaluation. |
Google Cloud Storage
| Object storage in Google Cloud Storage is included in the planned release. |
No assets match these filters. Try another name or reset the filters.
Pursuit currently supports Windows system copies on AWS, Azure, and VMware. Connection-specific prerequisites, permissions, image formats, and retrieval requirements are covered during setup.