Ìgbẹ́kẹ̀lé búburú kan máa ń ṣiṣẹ́ lórí ìwé ìfipamọ́ rẹ̀ ní kété tí olùgbékalẹ̀ bá ti fi sori ẹ̀rọ, kí ẹnikẹ́ni tó mọ̀ pé ó jẹ́ ìkà. Àwọn ẹ̀rọ ìṣàyẹ̀wò kódì rẹ ń wo ibi ìpamọ́ náà. Ohun èlò ìparí rẹ rí ìlànà kan, kì í ṣe àpò. Shield wà lórí ìparí olùgbékalẹ̀ náà ó sì ń dí i kí ó tó ṣe é.
Aṣojú fẹ́ẹ́rẹ́fẹ́ kan · Àwọn ibùdó iṣẹ́, àwọn olupin àti àwọn olùsáré CI · A ń ṣàkóso ìlànà ní àárín gbùngbùn

Dènà àwọn ìgbẹ́kẹ̀lé àti àwọn ìwé àkọsílẹ̀ búburú láti má ṣiṣẹ́ láé nípa dídáàbòbò àwọn ìparí àwọn olùgbékalẹ̀ níbi tí àwọn ìkọlù ti bẹ̀rẹ̀.
Shield n da awọn fifi sori ẹrọ package duro ni akoko gidi o si n ṣayẹwo wọn lodi si oye malware Xygeni. Awọn akopọ buburu ni a dina ni akoko fifi sori ẹrọ, ko si ṣe ami si iroyin ni owurọ ọjọ keji. Bakannaa kan si nẹtiwọọki naa: awọn asopọ si awọn amayederun buburu ti a mọ ni a ge ṣaaju ki ohunkohun to jade kuro ninu ẹrọ naa.
Ṣàlàyé àwọn òfin lẹ́ẹ̀kan náà, Shield sì lo wọ́n lórí gbogbo ẹ̀rọ nínú àjọ rẹ: ọjọ́ orí tó kéré jùlọ nínú àkójọ, gbà láyè àti kọ̀ àwọn àkójọ, àwọn ìforúkọsílẹ̀ tí a fọwọ́ sí, àti àwọn ibi tí ọkọ̀ ń lọ.
Tí ohun pàtàkì kan bá dé sí ìparí, Shield lè gé àwọn ìsopọ̀ nẹ́tíwọ́ọ̀kì ẹ̀rọ náà, láìfọwọ́sí tàbí nígbà tí a bá béèrè fún un, kí ìṣẹ̀lẹ̀ náà lè dúró ní kọ̀ǹpútà alágbèéká kan dípò kí ó tàn káàkiri àjọ náà.
Firewall Runtime kan fun opin Olùgbékalẹ̀.

Gbogbo fifi sori ẹrọ package ni a da duro ati pe a ti jẹrisi ni akoko gidi. Ikilọ kutukutu malware Xygeni mu awọn akopọ irira ti awọn irinṣẹ ti o da lori orukọ rere tun gbẹkẹle, laisi idaduro CVE, imọran, tabi ibuwọlu ti a tẹjade. Idinamọ waye ṣaaju ki iwe afọwọkọ fifi sori ẹrọ naa ṣiṣẹ.
Àwọn ìkọlù pọ́ọ̀npù ìpèsè tó yára jùlọ dé ní àwọn àtúnṣe tuntun. Shield jẹ́ kí o dènà àwọn àkójọ tí a tẹ̀ jáde láìpẹ́ ju ààlà rẹ lọ, ṣètò òfin àgbáyé kan kí o sì borí rẹ̀ gẹ́gẹ́ bí ìlànà àyíká, kí o sì pinnu ohun tó máa ṣẹlẹ̀ nígbà tí a kò bá lè pinnu ọjọ́ ìtẹ̀jáde kan: kìlọ̀ kí o sì gbà, tàbí kí o dènà.


Pinnu ohun tí àwọn olùgbékalẹ̀ rẹ lè fà àti ibi tí wọ́n ti lè wá. Máa ṣe àkójọ àwọn àkójọ tí ó ṣe kedere, kí o sì má ṣe fi àwọn ìforúkọsílẹ̀ tí àjọ rẹ ti fọwọ́ sí múlẹ̀.
Àwòṣe kan náà kan àwọn ìsopọ̀. Ààbò ń ṣàyẹ̀wò ìrìnàjò tí ń jáde láti òpin sí ìmọ̀ nẹ́tíwọ́ọ̀kì tuntun ó sì ń gé àwọn ìsopọ̀ sí àwọn IP àti àwọn agbègbè tí a mọ̀ tí a fà láti inú àwọn àmì ewu, nítorí náà, ìfisí tí ó wọ inú ẹ̀rọ kan kò le dé àwọn ètò ìṣiṣẹ́ tí a kọ́ láti pè. Ní àfikún sí èyí, o le dín ìrìnàjò sí àwọn ibi tí ó léwu gíga kù nípa ti ilẹ̀ ayé. Gbogbo ìsopọ̀ tí a dí mọ́ ni a ń kọ pẹ̀lú ibi tí ó gbìyànjú láti dé.


Ya ẹ̀rọ kan sọ́tọ̀ kí o sì gé gbogbo ìjáde tí ń jáde àyàfi ikanni aṣojú náà, kí o lè máa ṣàkóso ìparí nígbà tí o bá ń kó o. Tan ipò paranoid, a ó sì máa béèrè ìyàsọ́tọ̀ láìfọwọ́sí nígbà tí ìkìlọ̀ pàtàkì bá dé sí òpin èyíkéyìí.
Wo gbogbo ibi iṣẹ́, olupin ati olusare CI ti n ṣiṣẹ aṣoju Shield, pẹlu eto iṣiṣẹ rẹ, ẹya aṣoju, ipo lọwọlọwọ, nigbati a kọkọ ri i ati ikẹhin, ati ijoko iwe-aṣẹ rẹ. Ṣe àlẹmọ nipasẹ orukọ olugbalejo, iru aaye ipari tabi ipo.


Gbogbo bulọọki di iṣẹlẹ kan ninu pẹpẹ naa, pẹlu bi o ti le to, akoko ti a fi sita, opin ti o waye lori, bi o ti pẹ to ti ifihan naa, ati ohun ti a dina: package ati ẹya naa, tabi ibi ti a nlo. Ṣe àlẹmọ nipasẹ bi o ti le to, ẹka, iru, iye olumulo tabi ọjọ, ati okeere.
Ipin apa ti a daabobo kọọkan ni o ni ipa ọna ayẹwo tirẹ ati atokọ awọn paati, nitorinaa o le tun ṣe ohun ti o ṣẹlẹ lori ẹrọ kan pato nigbati ẹnikan ba beere.


Aṣojú fẹ́ẹ́rẹ́fẹ́ kan tó ń bo àwọn ibi iṣẹ́, àwọn olupin àti àwọn CI tó ń ṣiṣẹ́, pẹ̀lú àwọn ìjókòó tó ń léfòó kí ìbòjú lè tẹ̀lé àwọn ènìyàn rẹ dípò ohun èlò rẹ.
Wa ki o si ṣatunṣe awọn ewu API ninu koodu ṣaaju ki wọn to de iṣelọpọ.
Code and dependency scanning analyses the repository. Endpoint tooling watches processes and connections but has no application-security context to interpret a package or a registry. Between those two sits the moment a malicious dependency actually executes, on a developer’s machine. That is where Shield operates.
Reputation and signature-based approaches tell you about a malicious package once somebody else has already been hit by it. Shield blocks on behaviour and risk analysis, which is what makes it useful on the day an attack is new, and backs it with current network intelligence so anything that does land cannot phone home.
Blocks, isolations and geo events land in the same console as your code, dependency, pipeline and secret findings, with one audit trail. Not another agent with another dashboard ati omiiran login.
Endpoint detection watches processes, files and connections at the operating system level. It does not know what a package registry is, whether a dependency is malicious, or whether a version was published yesterday. Shield brings application-security context to the developer endpoint and enforces policy on the things AppSec cares about.
Shield is a lightweight agent that checks installs as they happen. Developers only notice it when something is blocked, and the block comes with the reason.
Malicious and unauthorized package installs, packages that are newer than your minimum-age threshold, installs from registries you have not approved, packages on your deny list, outbound connections to known-malicious IPs and domains, and traffic to geographies you have restricted.
You decide. The minimum-age policy lets you either warn and allow, or block, when the publication date is unknown.
Yes. The global minimum-age threshold can be overridden per ecosystem, and disabled for a specific ecosystem if you need to.
It blocks all outbound traffic from that machine except the Shield agent’s own channel, so the endpoint is contained but still manageable. You can trigger it on demand, or enable paranoid mode so isolation is requested automatically when a critical alert lands.
On developer workstations, on servers, and on CI runners. Licensing uses floating seats.
Yes. Every block is an event with full detail, and each endpoint keeps its own audit trail. Events can be filtered and exported.
pẹ̀lú Xygeni All-In-One AppSec Platform