Overview
Sandfly is an agentless security platform for Linux. Sandfly automatically hunts for hackers, malware, and suspicious activity across your Linux systems without loading endpoint agents. Sandfly has many unique features to help rapidly secure and monitor Linux:
- Works without performance or stability impacts.
- Finds unknown hacking and intruder activity.
- Detects advanced malware including stealth rootkits.
- Tracks SSH credential usage to help find misconfigurations and abuse.
- Audits login credentials for weak passwords and abuse potential.
- Allows customized threat hunting modules tailored to your unique environment.
- Fast deployment to get results in seconds with continuous threat monitoring.
- Free 20 host license included.
Sandfly works on most Linux distributions and CPU types without any compatibility issues.
Highlights
- Free 20 host license.
- Completely agentless and low-risk deployment for Linux with no performance, stability, or upgrade risks.
- Finds malware, intruders, and other suspicious activity automatically on Linux and monitors SSH and user credentials for security issues.
Details
Features and programs
Financing for AWS Marketplace purchases
Pricing
Additional AWS infrastructure costs
Type | Cost |
---|---|
EBS General Purpose SSD (gp2) volumes | $0.10/per GB/month of provisioned storage |
Vendor refund policy
Paid license users can receive a pro-rated refund based on remaining time. Contact support for more information.
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Sandfly 5.2.0 includes a new cloaked directory entry detection engine to uncover files hidden by malicious kernel modules.
Additional details
Usage instructions
Full setup instructions for AWS cloud instances with step by step details can be found at this link:
https://docs.sandflysecurity.com/docs/server-install-cloud-image-aws
Resources
Vendor resources
Support
Vendor support
Licensed users have full email and video support options available. Free users get standard email and forum support.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.