Defense
Cyprob for defense and critical infrastructure
On a defense network every outbound connection counts as a risk. Cyprob was built for these networks: installation, updates and daily operation all happen inside your own perimeter.
Operating in physical isolation
The product runs at full function on networks that will never be connected to the internet. Installation is done from an OVA image, and updates are carried in on physical media as signed packages. Verification happens on the inside, so the question of what happened to a file along the way is answered by the signature. Where the Saudi PDPL or the UAE data protection law applies, cross-border transfer never becomes a question, because nothing is transferred.

You know what is running inside
Every check the scan engine runs is signed with ed25519 and appears in the inventory. Content placed on the revocation list stops working. What the tool is actually executing on your network is read from the check inventory screen.
An intact trail
Every administrative action is logged with a timestamp and the user who performed it. Scan history, finding history and permission changes come together in a single audit trail.
Common questions
How are updates applied on an air-gapped network?
As signed packages carried in physically. Verification happens inside: whatever route the file took, a package that fails signature verification is never installed.
Can we see exactly what runs on the network?
Yes. Every check in the scan engine is signed and inventoried, and the inventory screen shows what is active. Revoked content is disabled even if it was installed earlier.
What does the audit trail cover?
Every management action. Scan history, finding history and permission changes are logged with user and timestamp in a single trail.