Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Description

AWS WAF serves as a protective layer for your web applications and APIs, guarding against prevalent web vulnerabilities that could hinder performance, jeopardize security, or lead to resource overconsumption. The service empowers users to manage incoming traffic by allowing the formulation of security protocols that can thwart typical attack vectors like SQL injection and cross-site scripting, in addition to creating custom rules for specific traffic patterns. To facilitate quick implementation, AWS provides Managed Rules for AWS WAF, which consist of pre-set rules curated by AWS or third-party sellers from the AWS Marketplace. These Managed Rules specifically target the OWASP Top 10 security threats and are routinely updated to counter emerging risks. Moreover, AWS WAF comes equipped with a comprehensive API that facilitates the automation of rule creation, deployment, and upkeep. Notably, AWS WAF follows a pay-as-you-go pricing model, charging based on the number of active rules and the volume of web requests processed by your application. This flexible pricing structure allows businesses to scale their security solutions according to their unique needs.

Description

open-appsec is an open-source initiative that builds on machine learning to provide pre-emptive web app & API threat protection against OWASP-Top-10 and zero-day attacks. It can be deployed as add-on to Kubernetes Ingress, NGINX, Envoy and API Gateways. The open-appsec engine learns how users normally interact with your web application. It then uses this information to automatically detect requests that fall outside of normal operations, and sends those requests for further analysis to decide whether the request is malicious or not. open-appsec uses two machine learning models: 1. A supervised model that was trained offline based on millions of requests, both malicious and benign. 2. An unsupervised model that is being built in real time in the protected environment. This model uses traffic patterns specific to the environment. open-oppsec simplifies maintenance as there is no threat signature upkeep and exception handling, like common in many WAF solutions.

API Access

Has API No 

API Access

Has API No 

Screenshots View All

Screenshots View All

Integrations

AWS Firewall Manager Yes 
AWS Marketplace Yes 
AWS Shield Yes 
Amazon CloudFront Yes 
Amazon Data Firehose Yes 
CaptchaSonic Yes 
Check Point Exposure Management Yes 
Chronicle SOAR Yes 
Elastic Observability Yes 
EmailAuth.io Yes 
HUMAN Sightline Cyberfraud Defense Yes 
Kubernetes No 
MLM Protec Yes 
NGINX No 
New Relic Yes 
Sekoia.io Yes 
SolarWinds AppOptics Yes 
Symantec WAF Yes 
Temperstack Yes 

Integrations

AWS Firewall Manager No 
AWS Marketplace No 
AWS Shield No 
Amazon CloudFront No 
Amazon Data Firehose No 
CaptchaSonic No 
Check Point Exposure Management No 
Chronicle SOAR No 
Elastic Observability No 
EmailAuth.io No 
HUMAN Sightline Cyberfraud Defense No 
Kubernetes Yes 
MLM Protec No 
NGINX Yes 
New Relic No 
Sekoia.io No 
SolarWinds AppOptics No 
Symantec WAF No 
Temperstack No 

Pricing Details

No price information available.
Free Trial No 
Free Version No 

Pricing Details

No price information available.
Free Trial Yes 
Free Version Yes 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Deployment

Web-Based Yes 
On-Premises Yes 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux Yes 
Chromebook No 

Customer Support

Business Hours Yes 
Live Rep (24/7) No 
Online Support Yes 

Customer Support

Business Hours Yes 
Live Rep (24/7) Yes 
Online Support Yes 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) No 
In Person No 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) Yes 
In Person No 

Vendor Details

Company Name

Amazon

Founded

1994

Country

United States

Website

aws.amazon.com/waf/

Vendor Details

Company Name

open-appsec

Founded

2022

Country

Israel

Website

www.openappsec.io

Product Features

Firewall

Alerts / Notifications Yes 
Application Visibility / Control Yes 
Automated Testing Yes 
Intrusion Prevention Yes 
LDAP Integration Yes 
Physical / Virtual Environment Yes 
Sandbox / Threat Simulation No 
Threat Identification Yes 

Web Application Firewalls (WAF)

Access Control / Permissions Yes 
Alerts / Notifications Yes 
Automate and Orchestrate Security Yes 
Automated Attack Detection Yes 
DDoS Protection Yes 
Dashboard Yes 
IP Reputation Checking Yes 
Managed Rules Yes 
OWASP Protection Yes 
Reporting / Analytics Yes 
Secure App Delivery Yes 
Server Cloaking Yes 
Virtual Patching Yes 
Zero-Day Attack Prevention Yes 

Product Features

Application Security

Analytics / Reporting Yes 
Open Source Component Monitoring Yes 
Source Code Analysis No 
Third-Party Tools Integration Yes 
Training Resources Yes 
Vulnerability Detection Yes 
Vulnerability Remediation Yes 

Web Application Firewalls (WAF)

Access Control / Permissions No 
Alerts / Notifications Yes 
Automate and Orchestrate Security Yes 
Automated Attack Detection Yes 
DDoS Protection No 
Dashboard Yes 
IP Reputation Checking Yes 
Managed Rules Yes 
OWASP Protection Yes 
Reporting / Analytics Yes 
Secure App Delivery No 
Server Cloaking No 
Virtual Patching No 
Zero-Day Attack Prevention Yes 

Alternatives

AppWall Reviews

AppWall

Radware

Alternatives

AppTrana Reviews

AppTrana

Indusface
Traceable Reviews

Traceable

Harness