Home/Docs/Fitur Lengkap v4.9.5

Fitur Lengkap — Staging v4.9.5

Semua fitur yang aktif di staging environment.

Panel

  • JWT + bcrypt autentikasi
  • Multi-server dashboard
  • Real-time event stream (WS)
  • Alert dedup 5 menit
  • Telegram notifikasi
  • Discord notifikasi
  • Command push via WS
  • WS relay terminal PTY
  • WS relay file manager
  • OTA agent update
  • Canary rollout system
  • FRONTEND_DIR dev mode
  • Server detail: Info/Activity/Inventory/Network/Users/System/Commands
  • Access Keys management
  • Settings: notification channels, global config

Agent — Monitoring

  • File integrity (SHA-256 inotify)
  • SSH login alert (HIGH, instant)
  • SSH failed (MEDIUM)
  • su login (HIGH)
  • Cron execution (LOW)
  • Firewall block (MEDIUM)
  • Malicious process (18 signatures)
  • Dual-interval batching (5s/30min)
  • Offline queue (SQLite)
  • Heartbeat setiap 60s
  • Server discovery (web/DB/lang)
  • Integrity baseline (user + file hash)
  • SysInfo (CPU/RAM/disk/service)

Agent — Stealth & Resilience

  • argv[0] process masquerade
  • /proc PID hiding (mount bind)
  • File hiding (LD_PRELOAD hook)
  • Service: systemd-sysconf
  • Hidden install dir
  • Anti-forensic shell init
  • PS1 via --init-file /dev/shm
  • Goroutine supervisor (restart 5s)
  • Zero-trace installer
  • Anti-tamper binary guard
  • Binary backup + restore (chattr +i)
  • Recovery service (tanpa cron)
  • Multi-OS persist (OpenRC/init.d/rc.local)
  • StartResurrect federated coverage
  • ELF arch validation OTA

Agent — Akses & Terminal

  • Web terminal (xterm.js)
  • PTY session keepalive 5 menit
  • Output ring buffer 64KB
  • Auto-reconnect + reclaim PTY
  • Clipboard auto-copy (selection)
  • Saved commands sidebar
  • Shell selector (bash/sh/zsh)
  • GS Rescue tunnel
  • Web file manager
  • CF Worker proxy (primary URL)
  • Fallback URL jika worker down

Roadmap

Report PDF/Excel — data sudah ada di DB (events, alerts, scan_findings, discovery), tinggal render template.

Engagement / MOU Module — scope definition, digital agreement untuk deployment ke klien. Setiap server terhubung ke engagement, semua aktivitas tercatat dalam konteks MOU.

Browser ping 30s (dari 60s) — margin lebih aman dari CF Tunnel idle timeout.