At a glance
| Booth | Q5441 |
| Country | TW |
| Website | www.cycraft.com |
Company profile
CYCRAFT TECHNOLOGY CO., LTD. is a Taiwan-listed cybersecurity company dedicated to automating cybersecurity with AI technology, safeguarding AI models, and conducting drone-security research, with Information Security, Model Security, and National Defense Security identified as its three core product lines. The company provides AI cybersecurity for semiconductor foundries, IC design houses, and enterprise environments, and its XCockpit Autonomous Threat Exposure Management Platform manages enterprise attack-surface paths and supports threat-exposure management for prioritizing security investments. Within Model Security, XecGuard is an AI Guardrail for LLMs and AI Agents that detects and analyzes conversational content to provide multilayer protection. XecART is an AI Red Teaming service covering live model testing, compliance validation, and resilience evaluation, with multi-round adversarial testing used to generate compliance reports aligned with regulatory standards. Within Information Security, the XCockpit AI Platform integrates the three XASM pillars of EASM, IASM, and Endpoint protection to provide proactive, real-time defense-in-depth for enterprises. CYCRAFT TECHNOLOGY CO., LTD. describes deployment experience across government, finance, and high-tech semiconductor industries and recognition from international research firms including Gartner. CyCraft Japan Corporation was established on 31 January 2019, while CYCRAFT TECHNOLOGY CO., LTD. is listed on the Taiwan Stock Exchange under stock code 7823 with a listing date of 5 February 2026. Its corporate structure includes the Taiwan headquarters, CyCraft Japan Corporation, and CyCraft Singapore Pte. Ltd., and its Japanese market channel includes multiple listed distributors. The company is associated with organizations including FIRST, Kyushu Economic Federation, Kyushu Digital Infrastructure Forum, FITA, IDF, and NCA. CYCRAFT TECHNOLOGY CO., LTD. has received ISO/IEC 27001:2013 certification and states that it has implemented data-storage and cybersecurity-management processes together with access controls for data and account passwords.
Exhibits
XCockpit follows the Continuous Threat Exposure Management framework and integrates External Attack Surface Management, Internal Attack Surface Management, and Endpoint Security Posture Management into an AI-driven threat-exposure platform. Its IASM component conducts impact analysis around privileged accounts, anticipates hacker attack paths, and helps define enterprise privilege perimeters. Its Endpoint component monitors endpoint threats and AD privileged-account activity in real time to identify prevalent attack techniques and signs of attack. Its EASM component provides visual analysis of external attack surfaces and continuously manages exposed services and digital assets so enterprises can identify cybersecurity vulnerabilities. Customer statements published with XCockpit describe autonomous investigation of attack behavior, root-cause analysis, real-time alerts, endpoint deployment across multiple countries, and reduced investigation effort; the platform page also includes a judge comment from the Interop Tokyo 2020 Best Cybersecurity Product Award. The XASM eXtended Attack Surface Management offering provides end-to-end attack-surface and exposure management, including enterprise exposure-situation analysis, compliance-gap analysis, compromised identity and endpoint root-cause analysis, monitoring, investigation, remediation recommendations, exposure reporting, and reputation-protection functions. EASM continuously monitors attacker forums and dark-web marketplaces, proactively detects enterprise domains, IP addresses, and other critical digital assets, and autonomously monitors 15 types of exposure intelligence 24/7 for real-time inspection of external attack surfaces. IASM analyzes AD account security, identifies high-risk configurations, and reconstructs intrusive routes through attack-path tracing; combined Endpoint forensic technology automatically performs broad endpoint detection and identifies malicious programs and attack techniques. XASM uses an AI-powered visual web investigation interface together with CyCraftGPT AI intelligence summaries and interactive Chat Bot analysis to correlate intelligence, assess risk, and rapidly generate remediation recommendations. Its exposure reports include security-compliance analysis, AD account weak-password audits, AD/Entra ID security assessments, and endpoint security-detection reports. XASM supports ticket monitoring to track mitigation work and uses autonomous analysis and performance management to improve security operations, while continuous monitoring, real-time alerts, and autonomous response workflows help enterprises control digital-asset exposure and respond to potential threats. The SEMI E187 Assessment Tool addresses semiconductor-equipment cybersecurity and organizes SEMI E187 around four security dimensions: operating-system support, network security, endpoint protection, and security monitoring. The tool is designed to conduct a comprehensive assessment through a single tool and check compliance with SEMI E187 requirements. It provides Chinese, English, and Japanese interfaces and can perform instant scanning and generate detailed reports with a single click. Assessment reports can be produced on encrypted USB drives for data integrity, and the tool supports offline scanning and detection. Scanning can be customized for specific files, directories, or selected items, and FIDO2 authentication is incorporated as an additional security control. The SEMI E187 workflow supports verification across the asset lifecycle, including virus-free checks before delivery, compliance and acceptance before entry, regular threat scanning after go-live, and production-line safety checks after updates. XCockpit IASM visualizes attack paths, identifies potential privileged accounts, and manages the internal identity-related threat attack surface. IASM uses AI to simulate account-impact analysis, anticipate attacker paths, and identify enterprise privilege perimeters. It monitors abnormal privileged-account activity and detects common AD account attack methods in real time so warning signs can be identified. Its quantitative identity-management functions keep track of identity attack surfaces, quantify enterprise identity-security indicators, and provide an overall security posture. CyCraftAI privilege-relationship simulation and account-privilege analysis are used to examine account exposure, manage attack paths, and assess the impact of changes to privileged accounts. IASM continuously monitors privileged accounts, detects AD attacks, and integrates threat-situational-awareness data, while providing visibility across assets, services, endpoints, groups, and accounts stored on-premises or in the cloud. CyCraftGPT is described as a Cyber AI cybersecurity language model with cybersecurity knowledge plus case-analysis and interpretation capabilities for supporting cybersecurity tasks and team operations. XCockpit EASM supports cybersecurity-compliance assessment, continuous exposure management, supplier-security assessment, digital-security benchmarking, and activities tied to corporate digital-security responsibility. EASM automatically discovers potential external attack surfaces, maps digital assets from an attacker perspective, and correlates accounts, endpoints, and services to identify potential vulnerabilities across the structure. Its AI-generated compliance assessment uses a trained AI model to provide audit recommendations and risk-control measures tailored to different cybersecurity-management systems and regulatory requirements. For early warning and leakage tracing, EASM inventories legitimate corporate credentials found on the surface web, dark web, or public marketplaces and provides real-time alerts intended to mitigate attacks before they occur. Autonomous case management can generate tickets for high-severity incidents, track mitigation measures, and record the status and performance of risk-control processes. Visualized incident analysis displays correlations among external exposures by risk level and digital-asset category, while AI real-time interpretation can produce asset inventories, supply-chain vulnerability reports, and mitigation recommendations. An EASM white paper inventories 233 cybersecurity issues and categorizes them into 8 major risks while examining attacker reconnaissance activity before attacks. XCockpit Endpoint provides Endpoint Security Posture Management by monitoring endpoint threats and AD privileged-account activity and detecting prevalent hacker attack techniques in real time. Its autonomous cybersecurity-response approach combines case context with autonomous case management to increase security-team productivity and strengthen cyber resilience. An AI language model trained for cybersecurity scenarios can automatically summarize attack incidents and support analysis tasks as part of the platform workflow. The endpoint service states 24/7 threat hunting with a ticket opened within 3 minutes and investigation within 15 minutes, and it provides MTTI and MTTD data. Visual root-cause analysis uses AI-simulated attack-path technology to summarize incident relationships and accelerate situation assessment. Supported operating systems include Windows 11, Windows 10, Windows 8.1, Windows 8, Windows 7 SP1; Windows Server 2025, 2022, 2019, 2016, 2012 R2, 2012, and 2008 R2 SP1; Linux on x64 and ARM64 including Ubuntu 12.04 ~ 24.10, CentOS 6.0 ~ 9.0, Debian 7.0 ~ 12.2, Red Hat Enterprise 6.0 ~ 9.4 plus 9.6 and 10.1, Alma Linux 8.5 ~ 9.6, OpenSUSE 15.1 ~ 15.3, Oracle Linux 7.9 ~ 9.4, Rocky Linux 8.6 ~ 9.4, and Amazon Linux 2 and 2023; and macOS on x64 and ARM64 from High Sierra 10.13 through Tahoe 26.0 as listed. The endpoint offering also lists Jamf Pro compatibility for deployment and scan integration. Industrial use cases for high-tech manufacturing describe XCockpit IASM using AI attack-path analysis to identify 300+ potential vectors and conduct permission remediation, together with continuous AI-powered endpoint monitoring and incident-response support for root-cause remediation. Finance use cases describe detection and containment of red-team assessments with zero false positives, automatic incident-ticket creation, mapping to MITRE ATT&CK® techniques, AI-assisted investigation, and support for financial-regulation compliance and audit reporting. Government use cases describe red-team exercises simulating nation-state attacks, automatic actionable incident tickets, AI-driven forensic analysis, cross-department response, and use of international attack intelligence to generate defensive recommendations. Retail use cases describe rapid detection and blocking of targeted attacks including web-shell intrusions and SQL injections, integration of XCockpit IASM and Endpoint with AI-powered forensic analysis, and LLM-based analysis intended to help non-security staff understand incidents and speed reporting and handling. The industrial-use-case material summarizes XCockpit around three core pillars: External Attack Surface Management, Internal Attack Surface Management, and Endpoint Security Posture Management. ThreatWall integrates the CyberTotal global threat-intelligence platform and updates blocking rules every hour to respond to newly emerging malware, phishing, APT relay infrastructure, and other suspicious connections. ThreatWall is compatible with DNS RPZ, supports Inline blocking and Mirror mode, and can provide compliance blocking reports that map to threat-intelligence lists published by national ISAC organizations including F-ISAC. Its active-defense functions use an AI proactive malicious-domain detection engine with dynamic updates and support for up to 10 million blocking rules, while the product can operate without SSL decryption keys. ThreatWall can display blocking records together with evidence of malicious behavior, reputation ratings from multiple intelligence vendors, and geographic and country information associated with malicious traffic and IP addresses.
Capabilities and products
- XCockpit Autonomous Threat Exposure Management Platform
- EASM External Attack Surface Management
- IASM identity/internal attack surface management
- Endpoint Security Posture Management
- XASM eXtended Attack Surface Management
- SEMI E187 semiconductor equipment cybersecurity compliance assessment
- XecGuard LLM Firewall
- XecART AI red-team security assessment
- CyCraftGPT cybersecurity language model
- ThreatWall proactive threat-intelligence blocking