Average Ratings 1 Rating
Average Ratings 0 Ratings
Description
Protect your APIs by analyzing and protecting them with passive, inline, or API-based integration with any network component, such as an API gateway, proxy or CDN. Predefined policies that are fine-tuned based on threat patterns, which have been used to protect billions of API transactions every day, provide unmatched protection. An API-based architecture and rich user interface allow integration with threat intelligence feeds and other security components. Patented ML based analysis eliminates JavaScript integration pen-alties like slow page loads, extended development cycles, and forced mobile-app upgrade. ML-based analysis generates a unique Behavioral Footprint to identify malicious intent and continuously tracks attackers as they retool.
Description
open-appsec is an open-source initiative that builds on machine learning to provide pre-emptive web app & API threat protection against OWASP-Top-10 and zero-day attacks.
It can be deployed as add-on to Kubernetes Ingress, NGINX, Envoy and API Gateways.
The open-appsec engine learns how users normally interact with your web application. It then uses this information to automatically detect requests that fall outside of normal operations, and sends those requests for further analysis to decide whether the request is malicious or not.
open-appsec uses two machine learning models:
1. A supervised model that was trained offline based on millions of requests, both malicious and benign.
2. An unsupervised model that is being built in real time in the protected environment. This model uses traffic patterns specific to the environment.
open-oppsec simplifies maintenance as there is no threat signature upkeep and exception handling, like common in many WAF solutions.
API Access
Has API
Yes
API Access
Has API
No
Integrations
NGINX
Yes
Amazon EKS
Yes
Amazon Elastic Container Service (Amazon ECS)
Yes
Amazon Web Services (AWS)
Yes
Azure Kubernetes Service (AKS)
Yes
Datadog
Yes
Docker
Yes
Envoy
Yes
F5 NGINX Ingress Controller
No
GigaSECURE
Yes
Integrations
NGINX
Yes
Amazon EKS
No
Amazon Elastic Container Service (Amazon ECS)
No
Amazon Web Services (AWS)
No
Azure Kubernetes Service (AKS)
No
Datadog
No
Docker
No
Envoy
No
F5 NGINX Ingress Controller
Yes
GigaSECURE
No
Pricing Details
No price information available.
Free Trial
Yes
Free Version
Yes
Pricing Details
No price information available.
Free Trial
Yes
Free Version
Yes
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
Yes
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
Yes
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
Yes
Chromebook
No
Customer Support
Business Hours
Yes
Live Rep (24/7)
Yes
Online Support
Yes
Customer Support
Business Hours
Yes
Live Rep (24/7)
Yes
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
Yes
Live Training (Online)
Yes
In Person
Yes
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
Yes
In Person
No
Vendor Details
Company Name
Cequence Security
Founded
2014
Country
United States
Website
www.cequence.ai
Vendor Details
Company Name
open-appsec
Founded
2022
Country
Israel
Website
www.openappsec.io
Product Features
Cloud Security
Antivirus
No
Application Security
Yes
Behavioral Analytics
Yes
Encryption
No
Endpoint Management
No
Incident Management
Yes
Intrusion Detection System
Yes
Threat Intelligence
Yes
Two-Factor Authentication
No
Vulnerability Management
Yes
Cybersecurity
AI / Machine Learning
Yes
Behavioral Analytics
Yes
Endpoint Management
No
IOC Verification
Yes
Incident Management
Yes
Tokenization
No
Vulnerability Scanning
Yes
Whitelisting / Blacklisting
Yes
Product Features
Application Security
Analytics / Reporting
Yes
Open Source Component Monitoring
Yes
Source Code Analysis
No
Third-Party Tools Integration
Yes
Training Resources
Yes
Vulnerability Detection
Yes
Vulnerability Remediation
Yes
Web Application Firewalls (WAF)
Access Control / Permissions
No
Alerts / Notifications
Yes
Automate and Orchestrate Security
Yes
Automated Attack Detection
Yes
DDoS Protection
No
Dashboard
Yes
IP Reputation Checking
Yes
Managed Rules
Yes
OWASP Protection
Yes
Reporting / Analytics
Yes
Secure App Delivery
No
Server Cloaking
No
Virtual Patching
No
Zero-Day Attack Prevention
Yes