Creates and deploys fake assets including files on endpoints, SCADA systems, IoT sensors, and infrastructure components. Uses available unused IP addresses from an organization for decoys, ensuring no impact on network availability.
02
Automated Attack Quarantine
Automatically isolates compromised endpoints when attackers engage with deception assets or when malware attempts to encrypt fake files. Prevents attack spread and stops communication with command and control servers.
03
Dynamic Deception Deployment
Enables on-demand creation of deception decoys based on newly discovered vulnerabilities or suspicious activity. Includes SOAR playbook for automated deployment of deception assets in response to network activity.
04
Attack Analysis
Captures and analyzes attack activities in real-time, provides detailed forensics, and collects Indicators of Compromise (IOCs) and Tactics, Techniques, and Procedures (TTPs).
05
Layer 2 Attack Detection
Identifies man-in-the-middle attacks, NBNSSpoofSpotter, NBT-NS, mDNS, and LLMNR spoofing using active and passive detection methods.
Your plan caps how many capabilities are shown — upgrade to see the full list