Endpoint Security for Windows

Stop Supply Chain Attacks Before They Detonate

PeerScope monitors every network connection made by every application on your Windows fleet — comparing it against a curated allowlist database — and alerts your team the moment something unexpected communicates outbound.

14k+ Endpoints protected
15+ Enterprise tenants
<2s Alert detection latency
peerscope.forelens.com/dashboard
PeerScope security dashboard showing real-time alert monitoring across endpoints
Windows 10 / 11 / Server
SaaS or on-prem deployment
Deploy in under 30 minutes
Zero Trust by design
AI-powered detection
How It Works

Three Steps from Deploy to Detection

01

Deploy the Agent

A lightweight agent installs on each Windows endpoint with no reboots and no kernel drivers required. It captures outbound DNS lookups and network connections in real time and forwards them securely to the PeerScope platform — whether hosted in the cloud or on your own infrastructure.

02

Monitor & Alert

Every connection is checked against Forelens' continuously maintained allowlist of trusted application behaviours. Connections that deviate — wrong process, unexpected destination, unsigned binary — generate an alert in under 2 seconds.

03

Investigate & Respond

Analysts use the PeerScope console to drill into each alert — reviewing the process, affected endpoints, variants, and full connection timeline. One-click actions let teams approve legitimate traffic, block threats, or escalate to Forelens' managed service team.

Analyst Workspace

Every Alert, Fully Explained

PeerScope doesn't just tell you something connected — it tells you exactly what connected, to where, from which process, on how many endpoints, and whether the binary was signed.

  • Split-pane alert list with real-time severity filtering
  • Full connection detail: destination, IP, port, process path, TLS version
  • Variant deduplication — see all affected endpoints at a glance
  • One-click: mark malicious, approve, add to allowlist, or assign
  • Cross-tenant scope for managed service providers
Book a Demo
peerscope.forelens.com/alerts/4821
PeerScope alert detail view showing malicious connection investigation workspace
Product Features

Built for Security Teams Who Need Answers Fast

Supply Chain Attack Detection

PeerScope catches trojanized software, malicious updates, and compromised third-party packages the moment they attempt to phone home — regardless of whether the binary is signed or trusted by the OS.

Learn more

Zero-Day Exploit Containment

Exploited processes must communicate outbound to exfiltrate data or receive commands. PeerScope's Spurious Communication Detection blocks this stage of every attack, even when the exploit itself is completely unknown.

Learn more

Ransomware Early Warning

Ransomware families exfiltrate data before encrypting. PeerScope detects the outbound data staging phase — giving your team a window to intervene before encryption starts.

Learn more

Allowlist Management

Manage per-tenant approved connections, globally trusted applications, and always-allowed rules from a single console. Changes propagate to all agents within seconds.

Multi-Tenant Console

One platform for managed security providers and enterprise teams alike. Separate tenant scopes with granular role-based access, cross-tenant dashboards, and full audit trails.

Managed Service Option

Not enough in-house analysts? Forelens' security team monitors your alerts, triages findings, and provides expert guidance — so you get enterprise-grade protection without expanding headcount.

Contact us

Ready to see PeerScope in action?

Get a personalised demo with your own data, or talk to our team about a managed service engagement.