Close

Overview

Enterprise vulnerability management, on your own infrastructure

Cyprob runs on infrastructure you own. Scan data stays on your servers, and your security team holds the check definitions.

What Cyprob is

Cyprob is a vulnerability management platform that scans the servers, services and open ports on your network and reports known vulnerabilities. It installs on a virtual machine you control, delivered as an OVA image or through an apt repository. Scan results, the asset inventory and reports stay in your own database. There is no cloud account and no outbound transfer of scan data. The core is open under Apache-2.0.

The check definitions belong to the institution that runs the network. In Cyprob a check is a readable YAML file. When a new vulnerability is announced, your security team writes the check, tries it on a small group of assets and then opens it to the whole network, on its own schedule.

Cyprob dashboard showing assets, scans and findings on one screen
Cyprob dashboard: assets, scans and findings on one screen

From installation to results

Installation ends with a single binary, and PostgreSQL is the only dependency. A management node distributes the work, and scan capacity grows by adding workers. Discovery maps the assets and services on the network, with UDP services in the default scope. A sync with the national vulnerability database brings new CVE records into the catalog. Results reach the screen while the scan is still running.

The cluster repairs itself. Leader election runs on PostgreSQL, so no external coordination tool is required. If a worker goes quiet, another worker takes over its job, and nothing written to the queue is lost. Every finding is stored with the request that was sent and the response that came back, so the person reviewing it can verify the result.

Who it is for

Cyprob can run in closed networks, which is where banks, government bodies, defense organizations and critical infrastructure operators usually need it. In environments with no route to the internet, catalog updates are carried in as signed packages. Every plugin and update is signed with ed25519, and content whose signature does not verify is not executed.

Managed service providers have a separate deployment model. The control plane runs redundantly on the provider infrastructure, only scan workers sit on the customer side, and organizations cannot see one another under any condition.

How an evaluation runs

Cyprob is positioned through authorized partners. During the evaluation the product is installed in your own environment and runs for 30 days on your own data, so your results decide. Send your demo request and we will introduce your institution to the authorized partner in your region.

Common questions

Does Cyprob send scan data anywhere?

No. Cyprob runs on your own virtual machine and writes everything it finds to your own PostgreSQL database. There is no cloud account, no telemetry and no outbound data flow, and the product keeps full function on networks with no route to the internet.

Do we need to install agents?

No. Scans run over the network from worker nodes. Nothing is installed on the servers, clients or network devices you scan; adding an asset to the scope means adding its address to the inventory.

Is Cyprob open source?

The core is. The scan engine is published under the Apache-2.0 licence and check definitions are readable YAML files. The enterprise edition and support are sold through authorised partners under a commercial licence.

How are updates delivered on a closed network?

As signed packages. Catalog and software updates are downloaded outside, carried in physically and verified before they are applied. A package that fails ed25519 signature verification is never installed.

What does the installation require?

One virtual machine. The product ships as an OVA image or through an apt repository, runs as a single binary and depends only on PostgreSQL. Scan capacity grows by adding worker nodes.


Request a demo How it works

← Cyprob home