Partner Tool
Share:

digiDations ATLAS

Breach-and-attack simulation that fires real payloads at your controls — and reads your own tools' logs to see what actually caught them

Opens at www.digidations.com — external site, RECATOOLS doesn't host this tool.
AWS Marketplace · 7-day trial On-prem, SaaS or air-gapped Singapore vendor
digiDations ATLAS logo
20,000+
Validation rules (vendor-stated)
ATT&CK
Enterprise + ICS matrices
Sigma
and Suricata rule output
4
ASEAN regulator mappings
What it does

Proof your controls work, not an assumption

Most organisations discover a control was misconfigured during the incident it failed to stop. ATLAS runs the attack on purpose, on a schedule, and checks the alert actually arrived.

Safe destructive testing

Ransomware and wiper samples detonate in an isolated VM with automatic snapshot rollback, so the dangerous half of the library is actually usable.

Reads your own tools

A log gateway ingests alerts from your SIEM and EDR, so scoring reflects what your stack reported — not what the simulator believes it did.

Generates detection rules

Every validation can emit Sigma and Suricata rules, turning a failed test into the content that fixes it.

ATT&CK and kill-chain mapping

Coverage is reported against MITRE ATT&CK — both the Enterprise and ICS matrices — and the Lockheed Martin kill chain.

Drift detection

Scheduled re-runs surface the control that quietly stopped working after a policy change or upgrade.

Measured response times

Tracks mean time to detect and respond through to ticket creation in your ITSM, rather than stopping at the alert.

Advertisement
After features · AD-W1 Responsive · Post-feature engagement
Detection Pipeline

How a validation run works

STAGE 1
Deploy validators
Paired agents sit either side of the controls you want tested
STAGE 2
Choose the attack
A technique, a threat-actor playbook, or a full chain
STAGE 3
Execute safely
Real traffic and samples; destructive payloads run sandboxed
STAGE 4
Collect alerts
The log gateway pulls what your SIEM and EDR actually reported
STAGE 5
Score the control
Prevented, detected, logged, or missed — with the evidence
STAGE 6
Generate rules
Sigma and Suricata content for whatever went undetected
STAGE 7
Re-test
Scheduled runs prove the fix held and catch drift
Deployment

Three ways to get it running

Mode 02

On-premises

Runs inside your own network, optionally with your own LLM, for data that cannot leave.

  • Bring your own model
  • Containerised
  • Air-gapped option
Mode 03

Through us

Licensing, scoping and the testing service around the platform.

  • CSA-licensed provider
  • Indonesia distribution
  • Pricing on request
Advertisement
After deployment · AD-W2 Responsive
Regional presence

APAC offices & coverage

Same-jurisdiction threat-intel for ASEAN and East Asian compliance frameworks.

🇸🇬 Singapore 🇮🇩 Indonesia 🇲🇾 Malaysia
FAQ

Common questions

How is this different from a penetration test?

A penetration test asks whether a skilled attacker can get in, once, on the days they are engaged. Breach-and-attack simulation asks whether your controls catch known techniques, continuously. They answer different questions and most mature programmes run both — the simulation keeps the baseline honest between the tests.

Is it safe to run real malware on a production network?

That is the design problem ATLAS is built around. Non-destructive techniques run between paired agents so the traffic is contained; genuinely destructive samples run in a separate sandboxed VM with automatic snapshot rollback. Scope it with your team before the first run regardless — this is a tool that deliberately does dangerous things carefully.

What does it cost?

The only public price is the AWS Marketplace AMI, listed from roughly US$20 per hour with a 7-day trial, which works out well into five figures a year if run continuously. On-premises and enterprise licensing are not published — ask us for a quote.

Which compliance frameworks does it map to?

digiDations publishes mapping whitepapers for MAS TRM, ABS AASE 2.0 and CSA CCoP 2.0 in Singapore, and BNM RMiT in Malaysia. There is no Indonesian OJK or BSSN mapping published at the time of writing — worth raising if that is your regulator.

Can I rely on the numbers on the vendor's own site?

Treat them as vendor claims until a methodology is published. We checked: the headline figure on digiDations' homepage — thousands of raw signals reduced to a handful of confirmed gaps — is hardcoded as fixed constants in the page's own JavaScript rather than computed from customer data. That does not make the product ineffective, but it does mean the percentage is an illustration. We have deliberately left it, and the other unsourced accuracy figures, off this page.

How established is digiDations?

Early stage, and worth knowing before a procurement conversation. The Singapore entity was incorporated in April 2024 and lists 11-50 staff. There is no publicly disclosed funding, no named customers or published case studies, and no third-party reviews on the usual platforms. What does exist is a detailed ATLAS product guide, a 2025 library report, an AWS Marketplace listing you can buy today, and a Singapore government innovation grant on which the company is the commercialisation partner for an SMU-led project. Judge the product on its documented capabilities rather than on market proof that is not there yet.

Does RECATOOLS get paid to list digiDations?

We earn no per-click fee for this listing and our editorial coverage is independent. For full disclosure: RECASYS is a reseller of digiDations products and SAIBERGARD Pte. Ltd. is a distributor in Indonesia, so we earn revenue if you buy a licence through us. That is also why this page attributes the vendor's statistics rather than repeating them as fact, and states plainly where the company is early stage.

Independently reviewed by RECATOOLS editorial on 16 Aug 2026. Listings are based on the vendor's public documentation; we don't accept payment for inclusion.
Disclosure: RECASYS is a reseller of digiDations products, and SAIBERGARD Pte. Ltd. is a distributor in Indonesia. We may earn revenue if you buy a licence through us. This does not affect the editorial assessment above — including the caveats about company stage and unverifiable vendor statistics.
Authorized reseller

Need pricing, a demo, or the full brochure?

Tell us about your environment and our team will get back to you with digiDations licensing, a guided demo, or the product documentation — usually within one business day.

Handled by RECASYS, a reseller of digiDations products. SAIBERGARD Pte. Ltd. is a distributor in Indonesia and holds a Singapore CSA penetration-testing licence (CS/PT/SC/2026-03/0080), so the testing service around these tools is delivered by a licensed provider. No obligation.

Prefer email? Write to [email protected]
Spam-protected · no account needed · see our Privacy Policy for how enquiries are handled.

Interested in ATLAS?

We can scope a validation programme and arrange a demo.

See ATLAS
Related on RECATOOLS

Explore related tools & intelligence

Hand-picked RECATOOLS pages relevant to validation and detection engineering.

Related News

You may be interested in these recent stories from our newsroom.

View all news →
Related

More Cybersecurity Tools