Evidence tier Source Confirmed · 4 captures on record
What the publisher says
As described on AWS Marketplace.
Most cloud security tools tell you what already happened. Shield Stratus stops it from happening at all. Deployed directly into AWS VPCs, Shield Stratus enforces real-time network decisions that block known malicious infrastructure before attackers can establish command-and-control or exfiltrate data from your environment. If your workloads can reach the internet, attackers can reach them too. Security Groups and NACLs control access but cannot identify or block malicious infrastructure at global scale.
Shield Stratus operates in two modes. Protect mode actively blocks malicious traffic at the VPC level, preventing C2 callbacks, data exfiltration, and lateral movement across AWS accounts. Observe mode allows traffic to flow while collecting network metadata for threat hunting, compliance auditing, and policy validation. Switch between modes instantly without redeployment or downtime. Organizations typically see malicious outbound connections blocked immediately after deployment.
Show the rest of the publisher’s description (1 more line)
All deployments are centrally managed through Intrusion's Command Hub with VPC-specific enforcement policies. INTRUSION (NASDAQ: INTZ) is trusted by the U.S. Department of Defense and delivers prevention-first technology powered by decades of network intelligence.
Highlights
Highlighted by the publisher on AWS Marketplace.
8.5 Billion IP Threat Intelligence Database: Blocks communication with known malicious infrastructure using 30+ years of continuously refined intelligence.
Autonomous Network Enforcement for the Cloud: Can deploy as a standalone security product, or work in concert with existing firewalls and security solutions. Run in full enforcement or visibility-only mode. Switch instantly without redeploying infrastructure or causing downtime.
Stops the Kill Chain: Prevents command-and-control callbacks, data exfiltration, lateral movement, and access to attacker-controlled infrastructure.
Agent build and provenance
See the full provenance
The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.
Plans and pricing as listed
3 listed- Hrs
- Hrs
- Hrs
Refund terms
As stated by the publisher on AWS Marketplace.
Hourly users may stop or cancel the service at any time.
Sources
Linked repositories
Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.
Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.

