wIDS
Web-based Intrusion Detection System
Monitoring anomalies and cybersecurity incidents in web systems
search and report any unwanted content on your websites
Analyzes dozens of factors and parameters
Raises and reports incidentsIntegrates with SIEM/SOAR
wIDS – a new class of Intrusion Detection Systems
wIDS is Monit24’s proprietary IDS solution that enables the identification of potential IT incidents through external analysis of web services. The system automatically scans the specified website along with its subpages, analyzing dozens of key factors for anomalies that may indicate an ongoing or completed attack on the IT infrastructure. Based on predefined rules, a cybersecurity artifact database, and artificial intelligence models, the system verifies various aspects of the website, searching for anomalies such as:
• suspicious elements on the page (e.g., JavaScripts loaded from suspicious sources)
• deviations from normal loading times / site performance speed, its size, and emerging HTTP errors
• unexpected changes in the page’s DOM structure, server response headers, or SSL/TLS certificates SSL/TLS
Anomalies and incidents
Detected anomalies are assessed in terms of threat level and likelihood of incident occurrence using a proprietary scoring system. When necessary, Monit24 raises an incident and escalates further actions, such as directly notifying responsible personnel (via SMS, Teams, email, Signal, etc.) or forwarding the report to external SIEM/SOAR/XDR systems or other tools used by SOC, cybersecurity management, or SRE teams.
The report may include key artifacts collected during the analysis, enabling a quick evaluation of the incident type (e.g., comparative screenshots, identification of specific content and locations on the site flagged as anomalies).
wIDS is being developed
as part of R&D work within the FENG-1.1 program.
Monit24 is creating the wIDS system under the R&D project titled: “wIDS – Web-based Intrusion Detection System – a system for monitoring anomalies in web services and applications for the purpose of cybersecurity incident detection”, co-financed by the European Union under the European Funds for a Modern Economy program.
Learn more, about the support for the wIDS project at the link:
KEY FEATURES of wIDS
Compared to existing host-based and network-based IDS, we introduce a new class of solution for detecting IT security breaches. wIDS (web-based IDS) is characterized by the following:
Analyzes the specified system externally, without requiring software or hardware installation within the IT infrastructure, resulting in fast and simple deployment as well as significantly lower costs than traditional IDS solutions.
Detects anomalies that may escape systems analyzing the internal scope of IT, and by operating independently of the monitored infrastructure, it can raise alerts even if an attacker manages to disable or disrupt internal IDS systems.
Independence of the type and architecture of the protected system (it does not matter whether the given web service runs on Linux, *BSD, Windows, Mac, or other niche systems unsupported by conventional IDS).
Function as a standalone IDS or enhance the observability of an existing IDS or Full-Stack Monitoring system through a wide range of integrations.
Incidents can be assigned to the appropriate personnel within the organization, responsible for verification, resolution, or escalation.
Collects detailed artifacts related to detected anomalies and associated incidents, making it easier for operators to identify issues and respond quickly.
Covers both pattern/rule-based analysis and machine-learning models trained on hundreds of millions of real threats and attacks.
Includes mechanisms to reduce false positives using AI powered by LLM-based models.
Provides a full API (OpenAPI standard) for seamless integration with any systems.
See our references.
We share honest feedback from our clients.
99% of our clients stay with us for years!
1 z 4
Are you interested in the wIDS solution? Would you like to learn more about the service and the possibility of implementing PoC for your web system?
Contact us!