nuDefend — cyber protection for your cloud servers
A single command installs a lightweight agent that blocks known attackers on any cloud or on-premise server — inbound and outbound — automatically. Privacy-first, self-updating, zero telemetry.
curl -sSL https://get.nudefend.com | sudo bash -s <YOUR_LICENSE_KEY>Runs on any Linux server — AWS, Azure, GCP, DigitalOcean or on-prem. Replace <YOUR_LICENSE_KEY> with the key from your welcome email.
How it works
Install in seconds
One command installs the signed, secure nuDefend agent onto your server. No dashboard to babysit.
Pulls a signed blocklist
Every 30 minutes the agent fetches a cryptographically signed threat list — malicious domains and attacker IPs.
Blocks threats instantly
Threats are dropped inbound and outbound, before they ever reach the services running on your server.
Local-only reports
See what was blocked on the server itself. Nothing about your traffic ever leaves the machine.
Why nuDefend
Any cloud, any server
AWS, Azure, GCP, DigitalOcean, bare metal — if it runs Linux, it's protected.
Privacy-first
The only outbound call is fetching the signed blocklist. Your data and traffic stay yours.
Always fresh
Threat lists refresh automatically every 30 minutes, so protection never goes stale.
Self-healing
The agent monitors itself and restores its rules if anything tampers with them.
Secure and hardened
A compact, hardened nuDefend agent — no embedded secrets and no needless attack surface.
One-line install
No agents to configure, no console to learn. Paste one command and you're done.
What nuDefend blocks
Two independent layers guard every server — one at the network edge, one at the DNS level — so threats are stopped whether they arrive, leave, or try to resolve a dangerous name.
Network layer — malicious IPs
Traffic to and from known-bad addresses is dropped at the kernel firewall, before it ever reaches the services on your server.
DNS layer — malicious domains
Dangerous domains are blackholed system-wide, so no application on the server can resolve or reach them.
AI crawlers & aggressive bots
A new wave of AI scrapers and automated crawlers hammers origins around the clock, burning CPU, bandwidth and database connections. nuDefend keeps pace — its threat lists refresh every 30 minutes, so protection tracks the shifting AI bot landscape and drops the worst offenders at the server itself.
How nuDefend protects your origin from AI crawlersBlock entire countries
Cut your exposure in one click. Choose exactly which countries can reach your server, or which ones cannot. Country blocking is included free with every nuDefend license.
Open (default)
Every country is allowed. Your server stays reachable worldwide, while malicious IPs and domains are still blocked as always.
Allow list
Only the countries you pick can connect. Perfect when your users live in a handful of regions and everywhere else is just noise.
Block list
Everyone connects except the countries you choose. A one-click high-risk countries shortcut blocks the usual sources of attacks instantly.
Safe by design
nuDefend never blocks the country your server sits in, so you cannot lock yourself out. Rules apply in both directions and reverse the moment you switch back to Open.
Simple per-server pricing
Pay only for the servers you protect. Cancel anytime.
- ✓Unlimited blocklist updates
- ✓Inbound + outbound protection
- ✓Local-only reporting, zero telemetry
- ✓Email support
Available on AWS Marketplace
Subscribe to nuDefend directly through AWS Marketplace and pay on your existing AWS bill — $49 per server / month, one-click provisioning, cancel anytime.
Privacy by design
nuDefend never sends your logs, traffic or metadata anywhere. The agent only downloads a signed threat list — a one-way street. Reports live on your server and nowhere else.
Fair and transparent
If a subscription lapses, nuDefend fails open — it stops blocking rather than locking you out — and can cleanly uninstall itself. No lock-in, ever.