Cloud Security Center
Play video
The Cloud Security Center is a server host security management system that identifies, analyzes and alerts security threats in real time. Through security capabilities such as anti blackmail, vulnerability scanning and repair, anti-virus, anti tampering, and compliance inspection, it helps users achieve automated security operation closed-loop for threat detection, response, and traceability, and protects the security of cloud hosts, local servers, and containers, And meet regulatory compliance requirements. Refer to 95187-1 for details

Main product specifications

Provide your system vulnerability one click repair capability
Number of bug fixes
20 times
Purchase duration
1 month
forty .00 /1 month
: ¥ 40.00/1 month
One click virus detection and disposal
Version selection
Antivirus version
Calculate the number of cores
one
Purchase duration
1 year
fifty-four .00 /1 year
: ¥ 54.00/1 year
Fully establish host security defense system
Version selection
Advanced Edition
Number of servers kept
one
Purchase duration
1 year
six hundred and twelve .00 /1 year
: RMB 612.00/1 year
Easier to meet compliance inspection requirements
Version selection
Enterprise Edition
Number of servers kept
one
Purchase duration
1 year
one thousand eight hundred and eighty-seven .00 /1 year
: ¥ 1887.00/1
Effectively protect containers
Purchase duration
1 year
Enquiry in progress
Provide you with the best security standard check for AliCloud platform configuration
Cloud platform configuration check scanning times
1000 times
Purchase duration
1 month
Enquiry in progress
Anti blackmail virus space, data backup in advance
Anti extortion custody service
no
Anti blackmail
100GB
Purchase duration
3 months
Enquiry in progress
Simple and batch malicious file detection service
Number of malicious file detection
100000 times
Purchase duration
1 year
Enquiry in progress

Application scenarios

Equal assurance compliance scenario
Hybrid virtual machine security scenario
Container security scenario
Equal Assurance Compliance Security Solution
For the requirements of intrusion prevention, identity authentication, security audit and other aspects of server host security in Level II and Level III of Equal Protection 2.0, the Cloud Security Center can answer the requirements of 15+equal protection standards
Capable of providing
Intrusion prevention
The vulnerability scanning function of the Cloud Security Center supports the scanning and one click repair of system vulnerabilities and application vulnerabilities; Support real-time detection and defense of host intrusion and file samples, and support alarm of active outreach and malicious attacks on server hosts; Support malicious code detection and prevention - detection of mining, blackmail, worms, DDoS trojans, etc
Identification
Check the password complexity of login server host and application system for security configuration, and support anti brute force cracking; Support security check on the configuration of cloud products used by users
security audit
Support to record 14 types of server host logs of 3 types, and audit through logs; Logs can be saved for 6 months
Recommended combination
Unified security management of hybrid virtual machine
The Cloud Security Center supports server hosts in various environments such as Alibaba Cloud, offline IDC, and other cloud manufacturers. Through the Cloud Security Center console, it can achieve unified protection, operation and maintenance of servers on and off the cloud, including virus detection, vulnerability scanning, anti blackmail and other security protection, and reduce security management costs
Capable of providing
Simple and rapid deployment
Under the condition that the network is accessible, you only need to install agents offline or on other ECS hosts to achieve unified management
Safe water level rise
Pull the security water level of non Alibaba Cloud server hosts through the cloud security center, and the cloud detection capability directly covers offline servers
Low safety management cost
One console manages all server host security
Recommended combination
Container Security Solution
Based on Alibaba Cloud container security ATT&CK attack and defense matrix, the Cloud Security Center focuses on the three life cycle stages of container construction, container deployment, and container operation. Through cloud native mode, container security capabilities are built in a multi-dimensional way to provide all-round security assurance for enterprise cloud containerization process
Capable of providing
Secure trusted image
In container construction, it supports continuous image vulnerability scanning, image supply chain security through trusted signature, and malicious use detection of Docker cp and Docker runcDirtycow to provide a secure computing environment for containers
Continuous configuration check
The cloud security center supports regular configuration checks covering Docker&Kube baselines to meet the security configuration requirements during container deployment
Run real-time detection
Based on the 200+security detection model, it implements container escape prevention and real-time threat detection, supports comprehensive vulnerability scanning and repair of containers, and comprehensively covers system vulnerabilities, application vulnerabilities, emergency 0Day vulnerabilities, etc
Recommended combination

Product advantages

Why Alibaba Cloud Security Center
High stability and high availability
The installed capacity of millions of server hosts and CPU utilization rate are lower than 10%; The server is deployed in multiple machine rooms to effectively ensure the high availability of the system
Unified security management
Support threat management and control of server hosts, containers and cloud products throughout the network, and deploy offline IDC and other cloud platforms for unified management and control
Safety closed-loop capability
Actively intercept mainstream virus trojans, comprehensively scan vulnerabilities, and repair vulnerabilities/baseline unsatisfied items with one click to reduce user operation and maintenance costs
Comprehensive attack detection
Collect host logs of three types of 14 types of servers, and the 250+threat detection model provides full link threat detection capability

Product Functions

Safety precautions
Vulnerability scanning and repair Mainstream system and software vulnerability scanning, and support one click vulnerability repair.
Cloud platform configuration check Based on the cloud platform security practice, the ability to link cloud products forms a security closed-loop.
Baseline inspection Reduce the risk caused by improper configuration based on Alibaba Cloud's best configuration checklist.
Active defense
Anti blackmail and anti-virus Real time intercepts seven kinds of known blackmail viruses, mining, worms, DDoS and other viruses.
Tamper proof Prevent websites from being implanted with terrorism and politics, dark chains, backdoors, etc., and ensure normal web pages.
Application whitelist Prevent unauthorized applications from starting abnormally and affecting normal business operation.
Threat detection
250+threat detection model It provides you with a full link threat detection capability, so that hackers have nowhere to hide.
Alarm automatic analysis and correlation Automatically correlate alarms, identify intrusions caused by low-risk exceptions, and improve operational efficiency.
Security situation The security screen shows the network security situation in a multi-dimensional way, including friends, enemies and threats.
Survey&Response
Automated attack traceability Automatically trace the source and cause of the attack to help users understand the intrusion threat and respond quickly.
Log analysis&audit Provide log audit and analysis capabilities, and provide a platform for attack traceability and compliance.
Container safety
Image vulnerability scanning It supports deep vulnerability scanning of container images and provides vulnerability repair solutions.
Container threat detection Container runtime and K8S threat detection.
Container firewall It provides integrated network firewall services of intelligent learning, alarm and interception of access control policies for the container environment.

Product Dynamics

New functions/specifications on January 21, 2019
New release of visual situation
View details
New functions/specifications on March 25, 2019
Comprehensive upgrade and release of vulnerability management
View details
New functions/specifications on March 25, 2019
New release of baseline inspection supports compliance inspection
View details
2019-03-25 Function optimization
The overview page is newly released to uniformly present the security threats on the cloud
View details
New functions/specifications on March 25, 2019
Web page anti tamper function newly released
View details
New functions/specifications on March 25, 2019
Situation awareness is comprehensively upgraded to a cloud security center
View details
New functions/specifications on March 25, 2019
Situation awareness is comprehensively upgraded to a cloud security center
View details
New functions/specifications on March 25, 2019
New release of anti ransomware and anti-virus capabilities based on kernel technology
View details
New functions/specifications on March 25, 2019
Custom alarm (Beta) release
View details
2019-05-07 New functions/specifications
Custom security screen, new release
View details
2019-05-14 Price adjustment
Helping small and medium-sized enterprises to develop their business security, the international version of Cloud Security Center reduced its price by nearly 50%
View details
2019-05-24 Function optimization
Web page tamper prevention supports one click startup to ensure that important content of the website is not maliciously tampered, hung up, and hidden
View details
2019-06-18 New functions/specifications
New release of application vulnerability scanning capability
View details
2019-06-27 Function optimization
New revision of emergency vulnerability
View details
2019-07-08 New functions/specifications
The safety report is newly released, which supports the generation of work reports and safety monitoring reports in different scenarios, helping to save energy in safe operation
View details
2019-08-01 Function optimization
Cloud Security Center cooperates with Github, and AccessKey leak detection capability is newly released
View details
2019-08-05 Function optimization
New Asset Center Release
View details
2019-08-13 New functions/specifications
New release of RDS SQL injection threat detection capability
View details
2019-08-15 Function optimization
The new asset center releases domain names and cloud product asset management capabilities to help enterprises manage cloud assets in a unified manner
View details
2019-08-22 Function optimization
Cloud's native security capability enables one click handling of security threats, supports access to malicious IP interception, binary virus detection, and persistent trojan in-depth detection
View details
2019-08-29 Function optimization
The new overview page of the asset center is released, which automatically provides you with the ability to count and analyze assets
View details
New functions/specifications on October 24, 2019
Customized anti brute force attack defense strategy newly released
View details
New functions/specifications on November 21, 2019
Asset fingerprint investigation supports the automatic counting function of planned tasks
View details
New functions/specifications on December 20, 2019
Release of Self inspection Tool for Graded Protection Compliance Enterprises
View details
2019-12-27 Function optimization
Generate a dedicated trial report for trial users, help enterprises fully understand the security status quo, and improve the security defense line
View details
New functions/specifications on December 31, 2019
New release of threat detection such as container runtime website backdoor, blackmail virus, active outreach, and abnormal process startup
View details
2020-01-02 Function optimization
Web page tamper prevention supports Windows process whitelist, and supports real-time business update while protecting
View details
2020-01-09 New Features/Specifications
The Task Center is newly released to support the security arrangement capability of bug batch repair and help enterprises achieve automated security operations
View details
2020-02-24 Function optimization
Windows server vulnerability supports pre patch one click repair
View details
2020-02-25 Function optimization
Windows sever vulnerability repair support 20162019 operating system
View details
2020-02-27 Function optimization
One command to easily install the cloud security center client
View details
2020-02-28 Function optimization
Web page tamper prevention realizes the security protection of dynamic websites, and solves the problem that news enterprises need to frequently modify website content and frequently switch functions
View details
2020-04-09 Function optimization
Automate the analysis of vulnerability repair urgency to help enterprises prioritize the repair of the most urgent vulnerability risks
View details
2020-06-02 New Features/Specifications
New Horus Eye on the safety screen
View details
2020-06-09 New Features/Specifications
Cloud Security Center Launches Antivirus Version
View details
2020-07-30 Function optimization
The Cloud Security Center supports the demonstration of the urgency of Windows software vulnerability repair according to Microsoft's official level
View details
2020-08-13 Function optimization
Security alerts add Web application threat detection and other detection capabilities
View details
2020-08-26 Function optimization
The container page of the asset center is newly upgraded to support the display of statistical data and risk information of container groups and containers
View details
2020-09-02 Function optimization
New operating system types supported by anti ransomware client
View details
2020-09-22 Function optimization
Cloud Security Center - Virus defense function supports configuring virus scanning cycle
View details
2020-10-22 Function optimization
Cloud security center - image security scanning supports access to private image warehouse
View details
2020-11-19 Function optimization
Support one click acquisition of the latest fingerprint of all assets
View details
2020-12-17 Function optimization
Cloud Security Center - supports batch processing of alarm events
View details
2020-12-24 New Features/Specifications
New flagship version of Cloud Security Center
View details
2021-01-12 Function optimization
Cloud Security Center - Image security scanning supports the image baseline check function
View details
2021-02-04 Function optimization
Support to display the source platform of AccessKey information disclosure
View details
2021-03-30 New Features/Specifications
The cloud security center supports the ISO 27001 compliance check function
View details
2021-04-01 Function optimization
Web page anti tamper support setting protection mode
View details
2021-07-22 Function optimization
Hybrid cloud scenario - support for access to assets outside Alibaba Cloud
View details
2021-08-19 New Features/Specifications
Cloud security center - database anti blackmail function release
View details
2021-09-06 New Features/Specifications
Cloud Security Center - Malicious Behavior Prevention Function Release
View details
2021-10-19 Function optimization
Multi account security control supports adding delegated administrators
View details
2021-10-30 Function optimization
Server anti blackmail function update
View details
2021-11-04 Function optimization
Image Security Scan - Scan Configuration New Vulnerabilities Retention Duration Configuration Item
View details
2021-11-25 Function optimization
Optimization of server anti blackmail function
View details
2021-11-25 Function optimization
Vulnerability Management Settings Cancel Scan Mode Configuration Item
View details
2022-02-22 Function optimization
Cloud Security Center - Asset Center Revision and Upgrade
View details
2022-03-29 New Features/Specifications
The cloud security center has added a new webshell communication interception function
View details
2022-04-15 New Features/Specifications
Cloud honeypot officially released
View details
2022-06-23 Price adjustment
Price adjustment of flagship version
View details
2022-06-23 Price adjustment
Stop new purchase of product expert service
View details
2022-07-01 New functions/specifications
New application security features
View details
2022-07-14 Function optimization
Baseline inspection supports viewing from the perspective of risk items
View details
2022-08-16 New Features/Specifications
Malicious File Detection SDK
View details
2022-08-16 New Features/Specifications
Release of renewal and configuration change function
View details
2022-10-14 Function optimization
Alarm interaction optimization
View details
2022-11-07 New Features/Specifications
Self service unsubscribe function publishing
View details
2022-11-17 New Features/Specifications
Anti blackmail support Alibaba Cloud lightweight application server
View details
2022-12-14 Function optimization
Asset overview optimization
View details
2023-01-05 Function optimization
Expired instances support one click release
View details
2023-01-11 Function optimization
Cloud platform configuration check supports CIS compliance items
View details
2023-02-03 New Features/Specifications
Application protection function supports white list configuration
View details
2023-02-22 Function optimization
Cloud platform configuration check supports modifying check item parameters
View details
2023-02-27 New Features/Specifications
New rule management function for threat analysis
View details
2023-03-17 Function optimization
The "Malicious Behavior Prevention" menu is adjusted to "Host Rule Management"
View details
2023-03-31 New Features/Specifications
Multi cloud asset access supports Azure server
View details
2023-04-07 Function optimization
Virus defense is renamed virus killing
View details
2023-04-18 New Region/New Availability Zone
The international version of value-added service "threat analysis" was officially released in East China 1 (Hangzhou)
View details
2023-04-23 function optimization
Application protection function supports one button access
View details
2023-05-10 New Features/Specifications
First launch of response orchestration function
View details
2023-05-25 Function optimization
Reduced configuration order supports reducing the number of server authorizations
View details
2023-07-03 New Features/Specifications
Support container asset exposure detection
View details
2023-07-07 New Features/Specifications
Release of commercial version of application protection function
View details
2023-07-07 New Features/Specifications
Vulnerability repair function can be purchased separately
View details
2023-07-07 New Features/Specifications
Cloud platform configuration check commercial version release
View details
2023-07-19 New Features/Specifications
Function release of the disposal center
View details
2023-08-02 New Features/Specifications
Support access to cloud security center configuration check log
View details
2023-08-28 New Features/Specifications
Support alarm triggering automatic response rule execution script
View details
2023-09-08 New Features/Specifications
Release of default policy for container active defense capability
View details
2023-09-15 New Features/Specifications
Phase II optimization function release of container anti tamper function
View details
2023-10-18 New Features/Specifications
Threat analysis supports regional deployment in Singapore
View details
2023-10-30 New Features/Specifications
SOAR supports domestic Tencent Cloud and Huawei Cloud multi cloud product linkage
View details
2023-10-31 New Features/Specifications
Support domestic Tencent Cloud, Huawei Cloud WAF and cloud firewall alarm log access
View details
2023-11-08 New Features/Specifications
The vulnerability repair function supports pay as you go
View details
2023-12-26 New Features/Specifications
Provide data sets to support user-defined list of concerns
View details
2023-12-27 Function optimization
Overview of increased risks in cloud platform configuration inspection
View details
2023-12-29 Function optimization
Cloud platform configuration check supports PCI DSS compliance standards
View details
2024-01-03 New Features/Specifications
Threat Analysis Predefined Dashboard "Global Alarm Situation" Release
View details
2024-01-30 New Features/Specifications
Cloud platform configuration check Pay As You Go commercial version release
View details
2024-02-02 New Features/Specifications
Agent free detection function commercial version release
View details
View all logs

Documentation and Tools