
Citadel browser agent av Arno van Wouwe
The Citadel browser agent manages IT policy enforcement and detection of malware & shadow IT, by analyzing & logging security events
Du treng Firefox for å bruke denne utvidinga
Metadata for utvidingar
Skjermbilde


Om denne utvidinga
Citadel is a browser agent that that enforces your IT policies and detects malware and shadow IT by analyzing and logging browser security events to syslog and Windows Event Log a privacy-respecting way. It is meant to be used by CISO and CIO to secure staff laptops, increase situational awareness, verify application of IT policy and allow Digital Forensics and Incident Response (DFIR).
Citadel can perform web filtering, limit the maximum duration of authenticated sessions, enforce your MFA policy, and help you enforce your password policy.
Citadel detects the following events in the browser:
* IP, URL or domain is blacklisted (good default blacklists provided, can be made bypassable by users)
* user is using unencrypted protocols for an application (e.g. FTP, HTTP or WS)
* user is using URL with username or password in the URL
* user has downloaded a file
* user has selected a file on the local drive (N.B. it is unknown if the file was uploaded)
* user has opened the print dialog for a page (N.B. it is unknown if the dialog was cancelled)
* the user is warned that the downloaded file is dangerous
* user has accepted downloading of a dangerous file
* user has used a password that does not conform to the password policy
* user connected using a password but without MFA, when policy requires it for this particular application
* security-related browser errors (e.g. certificate issues, detection of phishing or virus, etc.
It also reports on usage statistics of applications, allowing for detection of shadow IT and unused licences.
Events and reports are written as syslog entries with a relevant level, and can then be consumed by a SIEM or EDR. Citadel comes pre-integrated with the Wazuh, the open source XDR.
Citadel can perform web filtering, limit the maximum duration of authenticated sessions, enforce your MFA policy, and help you enforce your password policy.
Citadel detects the following events in the browser:
* IP, URL or domain is blacklisted (good default blacklists provided, can be made bypassable by users)
* user is using unencrypted protocols for an application (e.g. FTP, HTTP or WS)
* user is using URL with username or password in the URL
* user has downloaded a file
* user has selected a file on the local drive (N.B. it is unknown if the file was uploaded)
* user has opened the print dialog for a page (N.B. it is unknown if the dialog was cancelled)
* the user is warned that the downloaded file is dangerous
* user has accepted downloading of a dangerous file
* user has used a password that does not conform to the password policy
* user connected using a password but without MFA, when policy requires it for this particular application
* security-related browser errors (e.g. certificate issues, detection of phishing or virus, etc.
It also reports on usage statistics of applications, allowing for detection of shadow IT and unused licences.
Events and reports are written as syslog entries with a relevant level, and can then be consumed by a SIEM or EDR. Citadel comes pre-integrated with the Wazuh, the open source XDR.
Vurder opplevinga di
Løyve og dataLes meir
Påkravde løyve:
- Utveksle meldingar med andre program enn Firefox
- Laste ned filer, samt lese og modifisere nedlastingshistorikken til nettlesaren
- Få tilgang til nettlesarfaner
- Tilgang til nettlesaraktivitet under navigering
- Tilgang tiil dataa dine frå alle nettsider
Valfrie løyve:
- Tilgang tiil dataa dine frå alle nettsider
Meir informasjon
- Lenker for tillegg
- Versjon
- 1.3.2
- Storleik
- 187,8 KB
- Sist oppdatert
- 20 dagar sidan (17. juni 2025)
- Liknande kategoriar
- Lisens
- GNU General Public License v3.0 only
- Versjonshistorikk
Legg til i samling
Fleire utvidingar av Arno van Wouwe
- Ingen vurderingar enno
- Ingen vurderingar enno
- Ingen vurderingar enno
- Ingen vurderingar enno
- Ingen vurderingar enno
- Ingen vurderingar enno