Skip to content
Applied security technology

Guardian IDS V1.0

An intelligent detection system built by Cyber Keen, hardware, firmware and detection logic developed together rather than assembled from a reference design.

Guardian IDS V1.0 unit, Front view

Drag to rotate

What it is

Built, not badged.

Designed in-house

Hardware, firmware and detection logic developed by Cyber Keen rather than assembled from a reference design.

Intelligent detection

Activity is evaluated against behaviour observed in the deployed environment, not a fixed signature list alone.

Actionable alerting

Detections are raised with the context needed to decide, so an alert is a decision point rather than noise.

Maintained by the makers

The team that built the system tunes and supports it after deployment.

How it works

Five stages, from signal to decision.

Each stage is inspectable. Where the system is uncertain, it says so rather than guessing.

Signal inDecision out
  1. 1

    Sense

    The ESP32-based unit watches Wi-Fi and Ethernet traffic for rogue access points, unfamiliar devices and deauthentication attempts.

    Stage 01 of 05
  2. 2

    Normalise

    Captured traffic is structured into a consistent internal format the detection logic can evaluate.

    Stage 02 of 05
  3. 3

    Evaluate

    Activity is checked against expected behaviour, including ARP spoofing, port scanning and Wi-Fi evil-twin patterns.

    Stage 03 of 05
  4. 4

    Alert

    A confirmed detection triggers an instant email alert and shows on the unit's onboard LCD, so it reaches someone straight away.

    Stage 04 of 05
  5. 5

    Review

    Outcomes feed back into tuning, so detection improves with use.

    Stage 05 of 05
Guardian IDS V1.0 in operation, recorded demonstration, client data redacted
Close detail of the Guardian IDS V1.0 board and sensor assembly.
A Guardian IDS V1.0 unit installed on site.
Specifications

Published once measured.

Confirmed details appear below. Where a figure has not been measured and confirmed, we say so rather than estimate it.

Hardware platform
ESP32-based microcontroller
Connectivity
Wi-Fi and Ethernet
Detection method
AI-assisted, real-time analysis of network traffic
Threats detected
Rogue access points, deauthentication attacks, ARP spoofing, suspicious devices, network intrusions, port scanning, Wi-Fi evil twin attacks
Alerting
Instant email alerts for high and critical severity events
Local display
Onboard LCD for live status monitoring
Power
Low power consumption, designed for continuous operation
Form factor
Compact and portable
Deployment

Bring us the environment you need watched.

We assess whether Guardian IDS V1.0 suits the site before proposing it, and say so when it does not.

Request a briefing