Web Application Protection
As part of the Web Application Protection service, beCloud offers an effective and reliable solution to protect your web applications from various types of attacks and threats. The service is based on Web Application Firewall (WAF) technology.
WAF is a special tool that ensures the security of your web application by monitoring and filtering incoming and outgoing traffic. It scans requests and responses, analyzes them for potentially malicious content, and blocks malicious or suspicious activity before it reaches your application.
Features of the Web Application Protection service:
- blocking attacks that exploit vulnerabilities in a user's web application;
- blocking attacks using reputation databases (IP, URL), signature analysis, bot detection mechanism, including detection of the use of automation tools;
- full scanning of SSL-encrypted traffic for all types of embedded threats;
- checking the accuracy of the entered information, thereby preventing dangerous SQL injections and cross-site scripting;
- identifying attacks that falsify cookies, sessions or parameters;
- preventing threats that exploit logical loopholes in user applications;
- protection against denial of service (DoS) attacks at the application layer (L7);
- dynamic masking of server response information, which is potentially useful for hackers;
- comprehensive XML protection, including circuit checking for SOAP messages and XPath injection protection, and identification/blocking of XML attachments that hide malicious content.
WAF protections provide a wide range of security checks.
The main security checks description 262.17 kbFor convenience, clients receive daily reports with application statistics automatically to the email address specified when ordering the service.
Tariffs
Documents
We offer our clients two lines of pricing plans: "Polosa" and "Zapros".
The "Polosa" pricing plans assume that the cost of the service is calculated based on the threshold value of the access speed of traffic coming towards the client's web resource.
The "Zapros" pricing plans are based on the number of requests sent to the client's web resource per second.
For both pricing plan lines, the price is indicated for one website or for one domain of any level.
The WAF solution included in the "Zapros" pricing plans additionally utilizes machine learning technology (a built-in ML module), enabling intelligent attack detection based on behavior and semantics. The ML module is capable of detecting complex attacks in real time before they reach the client's web resource. It operates without manual configuration and is already trained for effective threat detection.
The "Zapros" pricing line is best suited for:
- sites and services with variable traffic (active users, application submission, forms);
- resources susceptible to complex attacks at the level of requests and business logic (popular resources with high security requirements, financial services, educational services, online stores, gaming, casinos, etc.);
- clients with their own team of information security specialists.
The "Polosa" pricing line is best suited for:
- sites with predictable, stable traffic;
- resources for which basic protection is sufficient, but high performance and availability are important;
- projects where there is no information security team, or the team's resources are limited, but reliable protection is needed.
When using the service, the client must use exclusively SSL certificates issued by commercial certificate authorities.
If you have any questions, our specialists will help you choose the most suitable pricing plan.
For more information, please contact beCloud sales department:
+375 17 287 11 11;
+375 17 287 11 49;
sales@becloud.by.