"WebOrion® Defacement Monitor will provide near real-time alerts in the event of a web defacement. Our high-fidelity approach in monitoring your website, using our powerful and innovative engines, provides you with a high level of assurance and reliability.
WebOrion® Defacement Monitor comes with configurable engines carefully designed to detect changes due to defacements, malicious code, third-party javascripts, malware, and more. Our unique and intelligent baseline process automatically differentiates dynamic and static parts of your website, allowing more effective monitoring with minimal false alerts.
There are 5 engines in total:
Content Analytics
Analyzes HTML source code (e.g. page title, links and frames) to determine if the webpage has been modified when checked against the baseline version.
Integrity Analytics
Auto-analyses the webpages to identify both internal and third party javascripts, images and style sheets to check for changes to filenames and contents.
Image Analytics
Allows users to select regions of the webpage for pixel analysis using image rendering technique.
Deep Learning NLP Keyword Engine
This engine uses Deep Learning to learn from a dataset of >10 years of defaced webpages. Upon detection of popular hacker keywords in the webpage, alerts will be triggered to inform the users.
Javascript Malware Detection Engine
This engine checks for the presence of well-known card skimming and cryptojacking javascripts which may be invisible to regular website visitors. High severity alerts will be triggered upon detection of any such malicious scripts.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor, and additional usage. You pay upfront or in installments according to your contract terms with the vendor. This entitles you to a specified quantity of use for the contract duration. Usage-based pricing is in effect for overages or additional usage not covered in the contract. These charges are applied on top of the contract price. If you choose not to renew or replace your contract before the contract end date, access to your entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
You choose a plan across three structural factors. First, scan frequency: Gold plans check every 5 minutes, Silver plans every 15 minutes. Second, URL capacity: Tier1 covers 10 URLs, Tier2 covers 50 URLs. Third, detection engines: Advanced plans use Content, Integrity, and Image engines; Premium4 adds an NLP engine; Premium5 adds both NLP and JME engines. Pricing scales as you add more frequent scans, more URLs, or more detection engines. All options bill under a contract commitment. Pick the combination matching your monitoring speed, site count, and detection depth.
Top-of-mind questions for buyers
What counts as one URL for billing purposes?
Each URL is one web page the service monitors for defacement. A Tier1 plan covers 10 URLs; a Tier2 plan covers 50 URLs. If you monitor multiple pages across sites, each page counts as one URL against your plan's limit.
What is the difference between the Advanced, Premium4, and Premium5 detection engine sets?
Advanced plans run Content, Integrity, and Image engines. Premium4 adds an NLP engine that analyzes text meaning. Premium5 adds both NLP and JME engines. Choosing more engines raises detection depth and the plan price accordingly.
Does the scan interval affect how quickly defacement is detected?
Yes. Gold plans scan every 5 minutes; Silver plans scan every 15 minutes. A shorter interval means unauthorized changes are flagged sooner. The interval you pick sets how often the service checks each monitored URL.
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Analyzes HTML source code including page title, links and frames to detect modifications when compared against baseline version
Integrity Verification System
Auto-analyzes webpages to identify internal and third-party javascripts, images and style sheets for changes to filenames and contents
Deep Learning NLP Keyword Detection
Uses deep learning trained on dataset of over 10 years of defaced webpages to detect and alert on popular hacker keywords
Malicious Script Detection
Detects presence of well-known card skimming and cryptojacking javascripts that may be invisible to regular website visitors
Intelligent Baseline Processing
Automatically differentiates dynamic and static parts of website to enable effective monitoring with minimal false alerts
Defacement Detection Engine
Attack Signature Engine that identifies attackers based on patterns, signatures, and profanities with support for multiple languages
Injected Component Detection
External Resources Engine that detects unidentified domains from external links attached to websites
Alert and Notification System
All-in-one alert and notification system for defacement activity monitoring
High Sensitivity Monitoring
Enhanced sensitivity detection system capable of identifying minimal defacement activity on web pages
Real-time Script Inspection and Blocking
Inspects every first, third, and fourth party script on every request with AI-powered analysis to detect web skimming, Magecart attacks, formjacking, and script tampering, blocking malicious code before execution in the browser.
Automated PCI DSS Compliance
Automates client-side compliance workflow including script inventory, AI-generated written justifications, integrity monitoring, and tamper alerts on payment pages with weekly audit-ready PDF reports validated by VikingCloud.
Data Exfiltration and Privacy Monitoring
Monitors all scripts to identify data exfiltration to unapproved destinations and detects violations of GDPR, CCPA, and similar privacy frameworks with visibility into data access patterns and vendor interactions.
100% Session Visibility Without Sampling
Provides complete monitoring of all user sessions with no sampling, logging every event for forensic investigation and audit purposes.
Rapid Deployment Architecture
Deploys as a single script tag in the HTML head without requiring stack rebuilds or modifications, integrating alongside existing security infrastructure like CloudFront and AWS WAF.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.