FOR CLOUD SECURITY TEAMS

Detect persistence in the cloud.

Perj helps security teams surface persistence behavior in cloud workloads. Today, Perj captures high-signal file, process, privilege, and persistence activity on Kubernetes nodes, then turns the event chain into AI-reviewed alerts with workload context.

Event chain

high
  1. runc:[2:INIT]

    Container init reads /proc, /etc/passwd

  2. EXECVE /usr/bin/sh

    Root shell launched 518s after start

  3. OPEN /root/.ssh/authorized_keys

    O_WRONLY | O_CREAT | O_APPEND

SSH key persistence

Malicious · 94%