Product Overview

In the era of increasing cyber threats, enterprises are fearful of reputation loss due to hacking incidents. They could also be facing millions of dollars of infringement penalties according to international personal data protection laws such as General Data Protection Regulation (GDPR). Even if the enterprises are trying wherever they can, to strengthen their cybersecurity capabilities, they are still vulnerable to zero-day and emerging cyber-attacks.

If threat mitigation and keeping away from infringement fines are the top priorities for the enterprises, it is necessary to not only enhance cyber defense, but also implement event record preservation procedures so enterprises can present admissible evidence in court, if needed. The emerging cyber threat and organized hacking attacks typically attempts to erase or encrypt all evidence of intrusion, however the only evidence that can be ensured of integrity is the network traffic record. Furthermore, regular malware rapid scan can reveal potential threats and discover intrusion evidence at an early stage and hence minimizing the impact of cyber incident.

SecuTex won the 2023 Computex Best Choice award. SecuTex is a cybersecurity product family including network protection and endpoint detection. SecuTex network protection is like the security dashcam at internet gateway. It records all network packets for real-time anomaly detection and incident notification as well as post-incident forensics and most importantly, with sandbox analysis and experts’ analysis verification. It is a useful tool for network management. SecuTex endpoint detection can scan endpoints by referring to government configurations baseline, software update status and anomaly detection to control risk and then conduct countermeasures. It best suits for cybersecurity management for enterprises.

SecuTex Network Protection is an advanced cyber threat defense system that records all network packets for real-time network traffic analysis and anomaly alert. This enables real-time incident notification as well as providing an important platform for post-incident forensics.

SecuTex Endpoint Detection is a light-weight rapid test software that can quickly scan all endpoints to locate compromised hosts during the post-incident phase so enterprises can respond and minimize the impact in a timely manner.

SecuTex Network Protection Architecture

SecuTex Endpoint Detection Architecture

Features & Advantages

SecuTex Network Protection

  1. Highly efficient 24/7 network packet recording
  2. Real-time deep packet inspection
  3. Highly scalable data storage
  4. Blacklisting and suspicious activity alert
  5. Network traffic metadata extraction
  6. Network session visualization
  7. Internet protocol metadata search
  8. Online network traffic forensic platform

SecuTex Endpoint Detection

  1. Anomaly rapid test on host devices
  2. Easy to use & deploy
  3. Robust identification for high-risk endpoints
  4. On-demand basis and minimal system resources required
  5. Yara rule inspection supported
  6. Local threat intelligence integration


SecuTex NP/ED awarded the COMPUTEX Best Choice Awards in June 2023, to acknowledge the advantages of this product.

Target Customers

SecuTex Network Protection

  1. Enterprises and government agencies that provide internet services and have digital evidence retention requirements.
  2. Large-scale organizations that already have cybersecurity protection and SOC in place but would like to employ deep packet inspection (DPI).
  3. Enterprises with wide network perimeter that would like to make an inventory of existing network architecture issues and prioritize their budge usage based on real network traffic records.

SecuTex Endpoint Detection

  1. Enterprises that conduct rapid testing as part of their incident response procedure requirements.
  2. Enterprises that have regular self-testing requirements.

Specification

SecuTex  Network Protection includes: 

  • SecuTex Box: High-speed packet recorder
  • SecuTex Portal: Management console


Packet Sniffing NodeSecuTex Box

Management ConsoleSecuTex Portal

Model Name

SCX-NP-BX48

SCX-NP-CM1

Network Interface

  • Management Port: 1000 Mbps port x2
  • Packet Sniffing Port: 1000 Mbpsport x2 or 10 Gbps fiber port x2
  • Management Port: 1000 Mbps port x2

Server Rack Sizes

2U19” rack

1U19” rack

Hard Disk Capacity

40T

(Actual capacity after RAID configuration)

14T

(Actual capacity after RAID configuration)

RAID

10

10

Power Supply

110V-220V with 2 RPS

110V-220V with 2 RPS

Features

  • Network packet sniffing, storing and indexing.
  • Supports a diverse set of network protocols including network layer protocols (IP, ICMP, …), transport layer protocols (TCP, UDP, …), and application layer protocols (HTTP, DNS, SMB, SMTP, MySQL, …)
  • Supports IPv4, IPv6, TCP, UDP and ICMP packet sniffing
  • Supports IDS and blacklist (malicious domain/IP) based detection.
  • Realtime dashboard for cyber threat visualization
  • Alert search and investigation for anomalies and suspicious network connections
  • Built-in subscription for CHT Security’s cyber threat intelligence which provides updates for IDS rules and blacklists (DNs and Ips)
  • Supports import of customized IDS rules and blacklists to monitor and detect suspicious network traffic


SecuTex Endpoint Detection

List of supported OS platforms and consoles:


Windows Agent

System Console

Supported OS

Windows:

  • Windows XP SP3*
  • Windows 8.1
  • Windows 8
  • Windows 7 SP1
  • Windows 10
  • Windows 11(x64)

Windows Server:

  • Windows Server 2003 R2 SP2 *
  • Windows Server 2003 SP2*
  • Windows Server 2008 Standard SP2(x86/x64)
  • Windows Server 2008 R2 SP1 (x64)
  • Windows Server 2012 R2
  • Windows Server 2012 (x64)
  • Windows Server 2016 (x64)
  • Windows Server 2019 (x64)
  • Windows Server 2022 (x64)
  • VMWare Workstation
  • VMWare ESXi

Video