Sucuri
Encyclopedia
Sucuri is a company that offers a security service that detects unauthorized changes to network (cloud) assets, including web sites, DNS
Domain name system
The Domain Name System is a hierarchical distributed naming system for computers, services, or any resource connected to the Internet or a private network. It associates various information with domain names assigned to each of the participating entities...

, Whois
WHOIS
WHOIS is a query and response protocol that is widely used for querying databases that store the registered users or assignees of an Internet resource, such as a domain name, an IP address block, or an autonomous system, but is also used for a wider range of other information. The protocol stores...

 records, SSL certificates and others. It is also heavily used as an early warning system to detect Malware
Malware
Malware, short for malicious software, consists of programming that is designed to disrupt or deny operation, gather information that leads to loss of privacy or exploitation, or gain unauthorized access to system resources, or that otherwise exhibits abusive behavior...

, Spam and other security issues on web sites and DNS hijacking.

Components

Sucuri consists of a main application that tracks all the domains and sites being monitored and a set of tests to be done. Everything is executed in the cloud and a web interface is available to manage all the information.
  • Web-based Integrity monitoring - Alert on changes to web sites
  • Web-based Malware detection - Crawler and detects malware on web sites
  • Whois monitoring - Tracks your Whois records for changes
  • DNS Monitoring - Tracks your DNS (ip addresses, domains for changes)
  • Web interface - Management interface to manage it all.
  • Malware Removal - Exploit remediation and server hardening

Controversies and Publicizing mass infections

Sucuri became famous when they started to publicize the tools used on mass attacks against sites hosted at GoDaddy, Network Solutions and other large hosting companies. GoDaddy criticized them for sharing too much information and possibly helping the attacks. In their defense, they stated that everything they posted were already known by the black hat community and it only helped the users to understand and better protect themselves.

External links

The source of this article is wikipedia, the free encyclopedia.  The text of this article is licensed under the GFDL.
 
x
OK