
REAL-TIME WEB SHELL DETECTION ADAPTED FOR CLOUD (vm)
WSS Cloud
WSS Cloud inspects uploaded code and detects server modifications to defend against malicious web shell-based security threats
Strengthen Your Real-Time Web Defense with WSS Cloud
WSS Cloud offers all the real-time detection functions of WSS Cloud (web shells, malicious URLs, personal information, configuration file modifications), adapted for a cloud computing environment.

Rise of Web Hacking
In recent years, multiple sources have reported on the increase in web-based hacking. For instance, around 80% of security incidents in 2023 occurred through web applications.* And web shells were used to exploit vulnerable web applications in 35% of the incidents reported by Cisco Talos (Q4, 2024).**
*Verizon DBIR 2023
**Cisco Talos Q4 2024 Incident Report

WSS CLOUD
Real-Time Web Security Solution
WSS Cloud protects web servers against a variety of web shell-based attacks. It monitors web services in real-time to detect web shells and malicious URLs injected into a web server or WAS. It then quarantines them and allows you to examine detection details.

WSS Cloud’s Cloud-Specific Features
Event Duplication Management
Prevent duplicate detection events
Scale In/Out
Support
Automate detection and logging when a web server or WAS is scaled
Docker Container Support
Get VM support for Docker container users

Security Management
Use an intermediate server to access the management server
Home Directory Detection
Auto-detect web/WAS home directory
History Management
View and manage Agent statuses and operation history (installations, pausing, etc.)


Customize your detection with
WSS Cloud:
Web Shell Upload
Web shell detections, quarantine options, notifications, and reports
Detection of Personal Information
Detection of personal information in files, documents, and databases
Malicious URL Management
Malicious URL management via Black, White, and Gray Lists
Recovery of changes
Detection and recovery of changes in source files and web server configuration files
Testimonials

“…With web-based attacks becoming increasingly sophisticated, we’ve felt much more secure since adopting UMV Technology’s WSS. It effectively detects even new and obfuscated web shells. As a domestic solution, it’s also highly customizable to our environment, and we’ve definitely seen a significant improvement in our web server security….”
SAMSUNG SDS

“…At first, we were concerned about server resource usage, but WSS runs smoothly with minimal CPU and memory consumption. Even on our live servers, it operates without any performance degradation, which has been very satisfying….”
SK TELECOM

“…Signature-based solutions had their limitations, but I was impressed that WSS’s SCR Parser could detect even obfuscated or modified web shells through static analysis. It’s proven to be effective against zero-day and evasive attacks, which has significantly increased our confidence in our security….”
HYUNDAI CARD
Explore Other UMV Products


What’s the difference between WSS On-Premise and WSS Cloud?
WSS On-Premise and WSS Cloud offer the exact same detection, response, and management functions, as well as identical high-performance. WSS Cloud simply adds special functions/customizations to support cloud environments (VMs or docker/containers).
Do I have to install a WSS Cloud Agent on every container?
WSS Cloud offers support for both VMs and docker/container configurations. In the case of VMs, one Agent is installed on each VM. In the case of docker/containers, one Agent is installed on each docker (not each container).
How does WSS Cloud handle scale-in/-out situations?
New Agents are automatically created/deleted the instant new VMs/containers are created/deleted. When new Agents are created, they automatically connect to the WSS Management Server and begin detection. When Agents are deleted on scale-in, Agents’ detection histories and log details are automatically backed up before the Agents are deleted.
Where is WSS Cloud’s detection data saved?
Detection data and history for all WSS Agents are saved centrally, on the WSS Management Server. This means that all of your data is fully contained within your internal network, and is never accessible via external systems or networks. Furthermore, saving Agent data on the Managment Server minimizes resource usage on your web server.
Are demos or PoCs available for WSS?
Yes, we offer PoCs for both WSS On-Premise and WSS Cloud. One of our engineers can help you get started and give you a run-down on its features. We can work with you to organize a PoC schedule and provide you with a checklist that allows you to see WSS in action firsthand and learn how it will fit into your unique IT environment.
Contact us for more information on PoCs.
How much does WSS Cloud cost?
WSS Cloud is available under a variety of different licenses, which can be customized to the needs of our customers. Please contact us for more detailed pricing information.