AI-Powered Network Defense

AI-Powered DDoS Detection
On Your Infrastructure

Smart Detection reads your router flow data, rates every alert with AI, and triggers BGP response from your dashboard — all on your infrastructure.

  • On-premises deploy

    Flow export from your routers — no inline tap

  • Offline licence

    Per-server binding, no runtime call-home

  • Dashboard included

    Operations UI in every plan — no add-on

  • Standard protocols

    NetFlow · IPFIX · sFlow · BGP · FlowSpec

Product Overview

The Smart Detection Plane of Your DDoS Mitigation Stack

CoreDetection watches flow telemetry from your routers, rates alerts with Smart Detection, and triggers BGP or notifications — with dashboard and reports on your infrastructure.

Smart Detection Engine

AI checks traffic pattern, source behaviour, and past attacks on every alert — then outputs a confidence score. Catches stealthy attacks and filters false positives that static thresholds miss.

BGP Blackhole Automation

Automate remote-triggered blackholing (RTBH) using BGP rules defined by the operator to quickly drop attack traffic during large-scale DDoS events.

BGP FlowSpec (RFC 5575/8955)

Drop, rate-limit, scrubbing redirect (accept/nexthop), RT redirect, or DSCP mark — with TCP flag and fragmentation matching via API.

IP Blocklist

Ingest threat-intelligence feeds (HTTP/HTTPS/local file) and enforce source-prefix drops via FlowSpec — refreshed on schedule or on demand.

Built-In Dashboard & Reports

Full operations dashboard with live attack monitoring, Smart Detection score breakdown, prefix intelligence, and exportable forensic reports — included, not an add-on.

Multi-Channel Alerting

Push attack START, UPDATE, and END events to Telegram, email, and webhooks. Every alert logged in your dashboard with full lifecycle tracking.

API & Integration

Integrate CoreDetection into existing systems using REST API, webhooks, and JSON/CSV export to build custom workflows and SOC tooling.

3
AI Checks Per Alert
0–100
Confidence Score
1–2s
sFlow Detection
Zero
Packet Impact

Built for Every Role on the Buying Committee

Deployment Patterns

How Teams Deploy CoreDetection

Real-world patterns from ISP and enterprise networks — anonymized under customer confidentiality.

Regional ISP · Multi-customer prefix monitoring

Challenge

Manual RTBH during volumetric floods slowed NOC response.

Approach

Smart Detection + automated FlowSpec and Telegram alerts.

<60s
Scoring cycle
Out-of-band
Deployment
NetFlow v9FlowSpec
Enterprise Network · On-premises data sovereignty

Challenge

Cloud-only DDoS visibility was not acceptable for regulated infrastructure.

Approach

On-prem deploy with offline licence and full dashboard on-site.

On-prem
Data residency
REST API
SOC integration
sFlowOffline licence

Representative deployment patterns from licensed environments. Customer identities withheld under confidentiality.

FAQ

Common Questions

What is CoreDetection?

An AI-powered DDoS detection appliance on your infrastructure. Routers send flow data; Smart Detection rates every alert and responds via BGP or notifications — with dashboard and reports included.

What is Smart Detection?

Smart Detection is CoreDetection's AI engine. Instead of reacting to volume alone, it checks traffic pattern, source behaviour, and whether the attack looks familiar — then outputs a confidence score from 0 to 100. Your team sees the score on the dashboard before BGP or alerts fire.

Ready to Deploy?

Connect your routers. Smart Detection handles the rest — on your infrastructure.

Request demo Pricing